Dell SonicWALL and Financial Sector CIG

February 10, 2016

Malicious cyber actors are targeting the U.S. financial sector with an increasing array of cyber malware. In order to provide better protection for its customers, Dell SonicWALL is a working with partners to provide comprehensive, accurate and timely protection against these threats.

Financial Sector Cyber Intelligence Group (CIG) Circulars are covered by Dell SonicWALL Security Services. Details are listed below:

Circular 37

    IPS:10967 "CIG APT C&C Traffic 2"

Circular 38

    IPS:10966 "CIG APT C&C Traffic 1"
    IPS:10968 "CIG APT C&C Traffic 3"

Circular 40

    IPS:11069 "CIG APT C&C Traffic 4"
    IPS:11070 "CIG APT C&C Traffic 5"
    IPS:11071 "CIG APT C&C Traffic 6"
    IPS:11072 "CIG APT C&C Traffic 7"
    IPS:11073 "CIG APT C&C Traffic 8"

Circular 41

    IPS:11092 "CIG APT C&C Traffic 9"
    IPS:11093 "CIG APT C&C Traffic 10"

Circular 43

    IPS:11133 "CIG APT C&C Traffic 11"
    IPS:11134 "CIG APT C&C Traffic 12"
    IPS:11135 "CIG APT C&C Traffic 13"
    IPS:11136 "CIG APT C&C Traffic 14"

Circular 44

    IPS:11144 "CIG APT C&C Traffic 15"

Circular 46

    IPS:11173 "CIG APT C&C Traffic 16"
    IPS:11174 "CIG APT C&C Traffic 17"

Circular 47

    GAV: "Exploit.CVE-2015-2590.A_2 (Exploit)"
    GAV: "Exploit.SWF.CVE-2015-3043 (Exploit)"
    GAV: "BackDoor.FCQQ (Trojan)"

Circular 51

    IPS:11246 "CIG APT C&C Traffic 19"

Circular 52

    IPS:11247 "CIG APT C&C Traffic 20"
    IPS:11248 "CIG APT C&C Traffic 21"
    IPS:11249 "CIG APT C&C Traffic 22"
    IPS:11250 "CIG APT C&C Traffic 23"
    IPS:11251 "CIG APT C&C Traffic 24"
    IPS:11252 "CIG APT C&C Traffic 25"

Circular 53

    IPS:11292 "CIG APT C&C Traffic 26"

Circular 55

    IPS:11453 "CIG APT C&C Traffic 27"
    IPS:11454 "CIG APT C&C Traffic 28"