Vendor
high
advisory
Unusual Child Process Execution by Web Servers on Linux
2 rules 5 TTPs 13 IOCsThis detection rule identifies suspicious child process executions originating from web server processes on Linux systems, indicating that attackers may have exploited web application vulnerabilities such as command injection or remote file inclusion to establish persistence or execute malicious commands.
Elastic Defend +45
persistence
execution
command-and-control
initial-access
linux
webserver
webshell
privilege-escalation
+4
2r
5t
13i
updated
medium
advisory
Perl Denial of Service Vulnerability
1 TTPA remote, unauthenticated attacker can exploit a vulnerability in Perl to cause a Denial of Service condition.
Perl
denial-of-service
vulnerability
1t