1
0
Форкнуть 0

specified that app armore is specific to linux

This commit is contained in:
Marty Hernandez Avedon 2021-06-21 18:06:58 -04:00
Родитель 41cdf436bb
Коммит e8a240c96b
2 изменённых файлов: 2 добавлений и 2 удалений

Просмотреть файл

@ -4,7 +4,7 @@ This query was originally published in the threat analytics report, *Sysrv botne
Sysrv is a Go-based botnet that targets both Windows and Linux servers, and steals resources to mine cryptocurrency. Sysrv is a Go-based botnet that targets both Windows and Linux servers, and steals resources to mine cryptocurrency.
The following query finds instances of the attacker attempting to stop the AppArmor network security service. The following query finds instances of the attacker attempting to stop the AppArmor network security service on devices running Linux.
## Query ## Query

Просмотреть файл

@ -4,7 +4,7 @@ This query was originally published in the threat analytics report, *Sysrv botne
Sysrv is a Go-based botnet that targets both Windows and Linux servers, and steals resources to mine cryptocurrency. Sysrv is a Go-based botnet that targets both Windows and Linux servers, and steals resources to mine cryptocurrency.
The following query finds instances of the Java process being used to execute cmd.exe and download and execute a PowerShell script. The following query finds instances of the Java process being used to execute cmd.exe, and download and execute a PowerShell script.
## Query ## Query