diff --git a/suricata/waterbear-suricata-20250112.txt b/suricata/[X]waterbear-suricata-20250112.txt similarity index 99% rename from suricata/waterbear-suricata-20250112.txt rename to suricata/[X]waterbear-suricata-20250112.txt index 05da30a..82c2ee5 100644 --- a/suricata/waterbear-suricata-20250112.txt +++ b/suricata/[X]waterbear-suricata-20250112.txt @@ -1,3 +1,5 @@ +[X]Updated + alert ip 45.77.181.203 any -> any any (msg:"Suspicious waterbear IP detected Entering Network: 45.77.181.203 (source) - APT Group: BlackTech"; sid:5921737425; rev:1;) alert ip any any -> 45.77.181.203 any (msg:"Suspicious waterbear IP detected Leaving Network: 45.77.181.203 (destination) - APT Group: BlackTech"; sid:5921737426; rev:1;) alert ip 103.40.112.228 any -> any any (msg:"Suspicious waterbear IP detected Entering Network: 103.40.112.228 (source) - APT Group: BlackTech"; sid:3182573330; rev:1;)