Intelligence View
Cisco IOS/IOS XE Ident Protocol TCP Connection NULL Pointer Dereference denial of service
A vulnerability was found in Cisco IOS and IOS XE (Router Operating System) (unknown version). It has been rated as problematic. This issue affects an unknown part of the component Ident Protocol Handler. Upgrading eliminates this…
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - Cisco IOS/IOS XE Ident Protocol TCP Connection NULL Pointer Dereference denial of service
id: 5d27ab28-baf0-472f-a701-4b3ebd7cc218
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-23
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-23"
description = "YARA Signature for "
strings:
$str = "Cisco IOS/IOS XE Ident Protoco" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR