Potential CVE-2022-26809 Exploitation Attempt — Detection Rule

Detects suspicious remote procedure call (RPC) service anomalies based on the spawned sub processes (long shot to detect the exploitation of vulnerabilities like CVE-2022-26809)

Read the full analysis on IntelFusions