mrheinen / lophiid

A distributed honeypot for monitoring large scale web attacks
GNU General Public License v2.0
7 stars 1 forks source link

XL: Update rules import and add default rules to git #34

Open mrheinen opened 2 months ago

mrheinen commented 2 months ago

This is to track the work to update the rules import mechanism. The goal is to allow lophiid to be shipped with a standard set of rules that are stored and maintained in git. Each rule will have a version and there will be an update mechanism that imports new and updates existing rules.

mrheinen commented 2 months ago

First part merged into dev https://github.com/mrheinen/lophiid/pull/39

mrheinen commented 2 months ago

Merged into main : https://github.com/mrheinen/lophiid/pull/41

mrheinen commented 2 months ago

Implemented and released. Will keep open until we add at least another 10 apps to import

mrheinen commented 2 months ago

Addded OFBiz CVE-2024-45507 with https://github.com/mrheinen/lophiid/pull/45

mrheinen commented 2 months ago

Added Vitogate here: https://github.com/mrheinen/lophiid/pull/47

CVE-2023-5222 CVE-2023-5702 CVE-2023-45852

mrheinen commented 1 month ago

Added metabase with PR https://github.com/mrheinen/lophiid/pull/61

CVE-2023-38646

mrheinen commented 1 month ago

Added F5 Big IP with PR https://github.com/mrheinen/lophiid/pull/63

CVE-2024-41723 CVE-2024-27202 CVE-2024-45844

mrheinen commented 1 month ago

Added SonicWALL NSA 2700 with PR https://github.com/mrheinen/lophiid/pull/65 Added SonicWALL SuperMassive 9200 with PR https://github.com/mrheinen/lophiid/pull/64

mrheinen commented 1 month ago

Added IBM Aspera Faspex with PR https://github.com/mrheinen/lophiid/pull/74

mrheinen commented 1 month ago

Added Trend Micro cloud edge rule with PR https://github.com/mrheinen/lophiid/pull/75

CVE-2024-48904

mrheinen commented 2 weeks ago

Added Cyberpanel RCE with https://github.com/mrheinen/lophiid/pull/95

CVE-2024-51567

mrheinen commented 2 days ago

Adding CMSMS with https://github.com/mrheinen/lophiid/pull/101

CVE-2019-9053 CVE-2021-26120