12686.txt

来自「This is the snapshot of Snot Latest Rule」· 文本 代码 · 共 52 行

TXT
52
字号
Rule:--Sid:12686--Summary:This event is generated when network traffic that indicates AIM Express is being used.--Impact:Possible policy violation. The use of AIM Express may be prohibited by corporate policy in some network environments. --Detailed Information:This event indicates that the AIM Express is being used on the protected network.--Affected Systems:All systems using AIM Express--Attack Scenarios:This is a possible policy violation, it may be that AIM Express has been installated on a client host.--Ease of Attack:Simple.--False Positives:None known.--False Negatives:None known.--Corrective Action:Disallow the use of AIM Express on the protected network and enforce or implement an organization wide policy on the use of AIM Express.--Contributors:Sourcefire Vulnerability Research Team--Additional References:--

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?