Check out the latest Zeek Blog by Johanna Amann on Detecting CVE-2020-0601 with Zeek


This is an excellent write up. Not only does it explain the vulnerability in technical detail that’s not so deep as to lose less technical folks, it makes it clear just how easy it is for us to detect the issue with extremely high fidelity. Especially given Jamey’s note that we’ll have instructions today for loading this on Corelight appliances, we should all be sharing this liberally.