Antivirus PrinterNightmare CVE-2021-34527 Exploit Detection — Detection Rule

Detects the suspicious file that is created from PoC code against Windows Print Spooler Remote Code Execution Vulnerability CVE-2021-34527 (PrinterNightmare), CVE-2021-1675 .

Read the full analysis on IntelFusions