Where would an analyst find information about shells spawned by root, Kernel Module loads, and wget/curl usage?
The Linux Sensor report is where an analyst would find information about shells spawned by root, Kernel Module loads, and wget/curl usage. The Linux Sensor report is a pre-defined report that provides a summary view of selected activities on Linux hosts. It shows information such as process execution events, network connection events, file write events, etc. that occurred on Linux hosts within a specified time range. The Sensor Health report, the Sensor Policy Daily report, and the Mac Sensor report do not provide the same information.
Herminia
2 months agoBlondell
2 months agoShaun
1 months agoRoosevelt
1 months agoBernardine
1 months agoHollis
2 months agoIlona
2 months agoJoesph
2 months agoGladis
2 months agoNathalie
2 months agoLatricia
2 months agoLindsey
2 months agoMoon
2 months agoSkye
2 months agoSharika
1 months agoLynna
1 months agoNelida
1 months agoRex
1 months agoSang
3 months agoMarilynn
1 months agoAlexia
2 months agoVernell
2 months agoSerita
2 months ago