We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
2 parents b3efc62 + 23267a1 commit ded738aCopy full SHA for ded738a
linux/hidden_shared_object.yml
@@ -1,4 +1,4 @@
1
-# Rule version v1.0.1
+# Rule version v1.0.2
2
3
- name: "System Linux: Creation of Hidden Shared Object File"
4
severity: "Medium"
@@ -15,7 +15,7 @@
15
- allOf:
16
- field: "logx.linux.message"
17
operator: "regexp"
18
- value: "(\\w+.\\w+.so |\\w+.so.\\w+ )"
+ value: "(\\w+\\.\\w+\\.so |\\w+\\.so\\.\\w+ )"
19
minCount: 1
20
timeLapse: 60
21
save:
0 commit comments