Skip to content

Commit

Permalink
Coverage for CVE-2021-44248 Log4Shell Log4j Update
Browse files Browse the repository at this point in the history
  • Loading branch information
forewarned committed Dec 10, 2021
1 parent ac1acb0 commit 2eb8d11
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion scripts/http_rce.zeek
Expand Up @@ -57,7 +57,7 @@ export {
/(str_replace[[:space:]]*?\+*?\()/i |
/(file_get_contents[[:space:]]*?\+*?\()/i | #Example: $code = file_get_contents('https://pastebin[.]com/raw/63LjCNAs');
/(PHP Obfuscator)/ |
/\$jndi:/i | # Based on https://nakedsecurity.sophos.com/2021/12/10/log4shell-java-vulnerability-how-to-safeguard-your-servers/
/jndi:/i | # Based on https://nakedsecurity.sophos.com/2021/12/10/log4shell-java-vulnerability-how-to-safeguard-your-servers/
# /(\?\>)/ | Too many false positives. Legitimate XML Ending
# /(\%\>)/ | Too many false positives.

Expand Down

0 comments on commit 2eb8d11

Please sign in to comment.