Airene Fang
1221448029
fix(scripts): Cloud Provider Reports Security Issue(aliyun could) (#2323)
ATT&CK矩阵ID:T1059.004
数据来源:进程启动触发检测
告警原因:该进程的命令行显示出反弹shelI的特征
命令行:timeout 1 bash -c exec 3<>/dev/tcp/127.0.0.1/2024
进程路径:/usr/bin/timeout
进程链:-[337650] /usr/sbin/sshd -D
-[397971] /usr/sbin/sshd -D -R
-[397977]-bash
-[398903] make dev
-[398920] bash ./scripts/serve.sh --dev
-[399037]bash ./scripts/wait-for-port.sh 2024 60 LangGraph
2026-04-18 19:33:32 +08:00
..
2026-04-10 17:43:39 +08:00
2026-04-14 10:29:44 +08:00
2026-04-10 17:43:39 +08:00
2026-02-06 17:48:15 +08:00
2026-04-01 23:13:00 +08:00
2026-03-13 21:33:12 +08:00
2026-04-10 17:43:39 +08:00
2026-04-10 17:43:39 +08:00
2026-04-10 17:43:39 +08:00
2026-03-22 22:39:50 +08:00
2026-03-29 13:14:45 +08:00
2026-03-29 21:38:29 +08:00
2026-04-10 17:43:39 +08:00
2026-04-10 17:43:39 +08:00
2026-04-05 21:07:35 +08:00
2026-03-14 22:55:52 +08:00
2026-04-18 19:33:32 +08:00