Sagan medium stable other
[EXTRAHOP] CVE-2021-22205 GitLab CE and EE Exploit Attempt
[EXTRAHOP] CVE-2021-22205 GitLab CE and EE Exploit Attempt
Detection Logic
pass any $HOME_NET any -> $HOME_NET any (msg:"[EXTRAHOP] CVE-2021-22205 GitLab CE and EE Exploit Attempt"; program:exabeam-api_data; json_content:".alert_name","CVE-2021-22205 GitLab CE and EE Exploit Attempt"; json_contains; parse_src_ip:1; normalize; reference:url,https://docs.extrahop.com/25.2/detections-overview/; classtype:suspicious-activity; sid:5016321; rev:1; metadata:deployment Endpoint,affected_product NONE,affected_version NONE,mitigation NONE,deprecation_reason NONE,tag NONE, created_at 2025_06_18, updated_at 2025_06_18, mitre_tactic_id T1210;) Field Validations
Loading…
Comments (0)
Loading comments...