SSH: Malicious SSH Version
This signature detects multiple malicious SSH version strings that attackers can send while performing popular SSH exploits.
Extended Description
The presence of a malicious SSH version message string during the initial phase of an SSH connection could indicate that an exploit is being attempted.
References
URL: http://www.ietf.org/html.charters/OLD/secsh-charter.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3