12038.txt
来自「This is the snapshot of Snot Latest Rule」· 文本 代码 · 共 54 行
TXT
54 行
Rule:--Sid:12038--Summary:This event is generated when network traffic that indicates AIM is being used.--Impact:Possible policy violation. The use of AIM may be prohibited by corporate policy in some network environments. This event indicates that the content of a transaction using AIM has been replaced.--Detailed Information:This event indicates that the AIM is being used on the protected network.--Affected Systems:All systems using AIM--Attack Scenarios:This is a possible policy violation, it may be that AIM has been installated on a client host.--Ease of Attack:Simple.--False Positives:None known.--False Negatives:None known.--Corrective Action:Disallow the use of AIM on the protected network and enforce or implement an organization wide policy on the use of AIM.--Contributors:Sourcefire Vulnerability Research Team--Additional References:--
⌨️ 快捷键说明
复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?