Network Defense - Catching the Galileo RCS using Snort
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | a0cbe011-1601-4985-bb23-dd7b8187a05a |
Fingerprint | b6d5f91da1181293 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Aug. 12, 2015, 4:20 p.m. |
Added to db | Jan. 18, 2023, 10:45 p.m. |
Last updated | Nov. 17, 2024, 11:40 p.m. |
Headline | Network Defense - Catching the Galileo RCS using Snort |
Title | Network Defense - Catching the Galileo RCS using Snort |
Detected Hints/Tags/Attributes | 45/1/13 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 115 | www.snort.org |
|
Details | Domain | 52 | www.wireshark.org |
|
Details | Domain | 24 | blog.securityonion.net |
|
Details | Domain | 2 | www.4armed.com |
|
Details | File | 1 | securityonion.html |
|
Details | File | 1206 | index.php |
|
Details | File | 47 | index.jsp |
|
Details | IPv4 | 7 | 192.168.1.4 |
|
Details | IPv4 | 262 | 192.168.1.1 |
|
Details | IPv4 | 1 | 178.62.50.243 |
|
Details | Url | 9 | https://www.snort.org |
|
Details | Url | 22 | https://www.wireshark.org |
|
Details | Url | 1 | http://blog.securityonion.net/p/securityonion.html |