YARA-X 1.14.0 Release, (Sat, Mar 7th)
2026-03-08T01:23:46Z•90673a0958d6b3f14f5d8bb478fb648e25a834db7dd939724392adee65fbdbe1
CVEbruteforcecrushftpisc-sansmalwarepodcastrssrtfthreat-intelvulnerabilitieswiresharkxwormyarayara-xzero-day
What happened
ISC SANS diary (early March 2026) summarizing multiple security updates and incident notes: YARA-X 1.14.0 release (improvements and bugfixes); reporting on an active XWorm malware wave using multi-technology delivery; observed bruteforce scans against CrushFTP with context noting prior serious flaws including CVE-2024-4040, CVE-2025-31161 and the actively exploited zero-day CVE-2025-54309; Wireshark 4.6.4 released to fix three vulnerabilities and multiple bugs; plus various how‑tos, podcasts and a guest diary entry.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- sans_isc_diary
- Record identifier
- 90673a0958d6b3f14f5d8bb478fb648e25a834db7dd939724392adee65fbdbe1
- Enrichment time
- 2026-03-08T01:23:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.