|
|||
Rule General Information |
---|
Release Date: | 2024-01-04 | |
Rule Name: | Tool Amun Detection - Shellcode | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Amun is a Python-based cybersecurity tool for simulating highly interactive honeypot environments. Honeypot is a security tool designed to trick hackers into attacks so that the security team can analyze the attacker's behavior and act accordingly. Amun is designed to simulate real systems and network services to attract attackers and capture their behavior. This rule is used to detect Shellcode traffic from the Amun tool. | |
Impact: | Launches a shell so that the attacker can control the compromised computer. | |
Affected OS: | Network Device, Solaris, FreeBSD, Windows, Mac OS, Other Unix, Linux | |
Reference: | ||
Solutions |
---|
Search and kill the malware by using antivirus tools and repair the system vulnerabilities. |