Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

YARA Rule for OOXML Maldocs: Less False Positives, (Tue, Nov 23rd)

published on 2021-11-23 16:59:32 UTC by
Content:
In this diary entry, I introduce an updated version of the YARA rule I presented in diary entry "Simple YARA Rules for Office Maldocs" for OOXML files with VBA code. Here is the OOXML YARA rule I presented yesterday:
Article: YARA Rule for OOXML Maldocs: Less False Positives, (Tue, Nov 23rd) - published almost 3 years ago.

https://isc.sans.edu/diary/rss/28066   
Published: 2021 11 23 16:59:32
Received: 2021 11 23 18:01:05
Feed: SANS Internet Storm Center, InfoCON: green
Source: SANS Internet Storm Center, InfoCON: green
Category: Alerts
Topic: Vulnerabilities
Views: 0

Custom HTML Block

Click to Open Code Editor