RULE(RULE ID:333562)

Rule General Information
Release Date: 2021-05-13
Rule Name: APT-29 Campaign - WellMess Command and Control
Severity:
CVE ID:
Rule Protection Details
Description: APT29 is an adaptive and disciplined threat group that hides its activity on a victim’s network, communicating infrequently and in a way that closely resembles legitimate traffic. By using legitimate popular web services, the group can also take advantage of encrypted SSL connections, making detection even more difficult.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: https://www.fireeye.com/current-threats/apt-groups.html
Solutions
Please contact the software vendor to update the software patch.