Update lnx_shell_priv_esc_prep.yml

This commit is contained in:
Galapag0s 2019-09-06 11:29:42 -04:00 committed by GitHub
parent 23021aa110
commit ccdda5e82b
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -62,7 +62,7 @@ detection:
- 'find / -perm -u=s'
- 'find / -perm -g=s'
- 'find / -perm -4000'
- 'find / -perm -2000
- 'find / -perm -2000'
timeframe: 30m
condition: keywords | count() by host > 6
falsepositives: