Rule Info
Name
MAL_WAR_Ivanti_EPMM_MobileIron_Mi_War_Aug23
Author
Florian Roth
Description
Detects WAR file found in the Ivanti EPMM / MobileIron Core compromises exploiting CVE-2023-35078
Score
85
Date
2023-08-01
Minimum Yara
1.7
Rule Hash
26f8dda8519c6c56a442219f4d2515f5
Tags
['CVE_2023_35078', 'FILE', 'DEMO', 'MAL']
Required Modules
[]
Virustotal Matches
Antivirus Verdicts
Rating
Number of Samples
Malicious (>= 10 engines)
0
Suspicious (< 10 engines)
1
Clean (0 engines)
0