We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
2 parents 9da8ed1 + 56eecac commit a91576fCopy full SHA for a91576f
rules/cross-platform/command_and_control_socks_fortigate_endpoint.toml
@@ -63,7 +63,7 @@ note = """## Triage and analysis
63
### Response and remediation
64
65
- Immediately isolate the affected system from the network to prevent further unauthorized access or data exfiltration.
66
-- Terminate the suspicious processes and all associated childs and parents.
+- Terminate the suspicious processes and all associated children and parents.
67
- Conduct a thorough review of the system's configuration files to identify unauthorized changes.
68
- Reset credentials for any accounts associated with the source machine.
69
- Implement network-level controls to block traffic via SOCKS unless authorized.
0 commit comments