Skip to content

How current are Malware sigs?  #6

@mimugmail

Description

@mimugmail

Hi,

How current are the sigs you grepped from malware-traffic-analysis.net? Via subjects of blogposts I cant find any angular or neutrino pcaps.

Would like to generate some Suricata rules for protection and don't want to start from scratch.

If you like I can send you the delta of the hashes.

EDIT: Sorry, I'm talking about: https://github.com/trisulnsm/trisul-scripts/blob/master/lua/frontend_scripts/reassembly/ja3/prints/ja3fingerprint.json

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions