I've attached an example ruleset configuration file that has quite a few rules for commonly exploited applications. Feel free to use them or modify as you like.