CVE-2021-1675 Print Spooler Exploitation IPC Access — Detection Rule

Detects remote printer driver load from Detailed File Share in Security logs that are a sign of successful exploitation attempts against print spooler vulnerability CVE-2021-1675 and CVE-2021-34527

Read the full analysis on IntelFusions