Search and filter across all detection sources
189 rules
[NETSCREEN] IP spoofing
[EXTRAHOP] Spoofed TLS Certificate
[SONICWALL] IP Spoof Detected
[CISCO-AIRMARSHAL] SSID Spoofing Detected
[CISCO-MERAKI] SSID Spoofing Detected
[HUAWEI] ATCKDF - IP spoof attack
[KISMET] Possible spoof/broken AP
[KISMET] Spoofed disassociated/deauthenitcate packets
[SONICWALL] Possible IP spoof detected
[SONICWALL] Possible IP spoof dropped
[KISMET] Spoofed client [incorrectly] injecting data
[SONICWALL] Intrusion Detection - Spoof attack dropped
[WATCHGUARD] Detected an ARP spoofing attack
[WINDOWS-SECURITY] Potential NetBIOS name spoofing
Brand spoof: Dropbox
Impersonation of Dropbox, a file sharing service; specifically spoofs the Dropbox sender domain.
[CISCO-MERAKI] WIPS Mac Spoofing Attack Detected
[KISMET] AP change channels. Possibel AP spoof
[KISMET] AP spoof with less-secure encryption
[KISMET] Misconfigured or spoofed client [ignoring DHCP]
[KISMET] Possible client spoof/MAC cloning attack
[WATCHGUARD] Possible loop or ARP spoofing detected
Guilin_veterans_cookie_spoofing_tool [yara]
Chinese Hacktool Set - file Guilin veterans cookie spoofing tool.exe
Guilin_veterans_cookie_spoofing_tool [malware]