RULE(RULE ID:714596)

Rule General Information
Release Date: 2024-01-04
Rule Name: Tool Amun Detection - Shellcode
Severity:
CVE ID:
Rule Protection Details
Description: Amun is a Python-based cybersecurity tool for simulating highly interactive honeypot environments. Honeypot is a security tool designed to trick hackers into attacks so that the security team can analyze the attacker's behavior and act accordingly. Amun is designed to simulate real systems and network services to attract attackers and capture their behavior. This rule is used to detect Shellcode traffic from the Amun tool.
Impact: Launches a shell so that the attacker can control the compromised computer.
Affected OS: Network Device, Solaris, FreeBSD, Windows, Mac OS, Other Unix, Linux
Reference:
Solutions
Search and kill the malware by using antivirus tools and repair the system vulnerabilities.