Tag
high
advisory
Detection of Shell Application File Write Operations to Suspicious Directories
1 rule 1 TTPDetection of Windows shell and scripting applications writing files to common staging directories used by threat actors for persistence and lateral movement.
persistence
execution
defensive-evasion
file-system
1r
1t
high
advisory
NLTK TweetTokenizer Regular Expression Denial of Service
2 TTPs 1 CVEThe NLTK library's TweetTokenizer is vulnerable to a ReDoS attack due to an unbounded regular expression, allowing unauthenticated attackers to trigger CPU exhaustion.
NLTK +1
vulnerability
file-system
python
2t
1c
updated