RULE(RULE ID:338199)

Rule General Information
Release Date: 2024-07-24
Rule Name: Sensitive File /etc/passwd Access Detection
Severity:
CVE ID:
Rule Protection Details
Description: By acquiring key sensitive information, an attacker can further harm the target of infiltration. Under Linux, etcpasswd is a file that records the basic attributes of each user, which can be modified by the system administrator to manage the user. This rule is used to detect suspicious behavior that attempts to obtain /etc/passwd information.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.