Incident Live 2146 / 2146
마지막 조회: 06:46:06
0개 선택됨
NEW 인시던트
4 개
* NEW 상태 인시던트를 모두 resolved_security_testing 으로 처리합니다
AUTO RESOLVE
OFF
5분마다 NEW 인시던트 중 알럿 5개 이상 자동 리졸브
| ID | Status | Severity | Description | Hosts | OS | Alerts | Created | Modified | Actions | |
|---|---|---|---|---|---|---|---|---|---|---|
| #613 | Resolved | CRITICAL | 'CVE-2023-45853 vulnerability in zlib at /symantec_testmanag... | - | - | 1000 | 01-06 09:30 | 01-08 15:38 | - | |
| #646 | Resolved | HIGH | 'Process Injection - 288965039' along with 1 other issue gen... | in-bridge-40 | Linux | 2 | 01-06 11:39 | 01-06 11:39 | - | |
| #645 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | inbridge-ubt-24 | Linux | 3 | 01-06 11:39 | 01-06 11:39 | - | |
| #644 | Resolved | HIGH | Shared object injection using LD_PRELOAD on a shell command | in-bridge-40 | Linux | 1 | 01-06 11:38 | 01-06 11:38 | - | |
| #643 | Resolved | HIGH | 'Process Injection - 288965039' along with 3 other issues ge... | inbridge-42 | Linux | 4 | 01-06 11:20 | 01-06 11:38 | - | |
| #642 | Resolved | HIGH | 'Process Injection - 288965039' along with 1 other issue gen... | inbridge-ubt-24 | Linux | 2 | 01-06 11:20 | 01-06 11:38 | - | |
| #641 | Resolved | HIGH | Shared object injection using LD_PRELOAD on a shell command | inbridge-42 | Linux | 1 | 01-06 11:15 | 01-06 11:16 | - | |
| #640 | Resolved | MEDIUM | Process action type = execution AND target process cmd = *so... | in-bridge-40 | Linux | 1 | 01-06 11:12 | 01-06 11:16 | - | |
| #639 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | inbridge-ubt-24 | Linux | 3 | 01-06 11:08 | 01-06 11:16 | - | |
| #638 | Resolved | HIGH | 'Staged Malware Activity - 2123359011' along with 2 other is... | inbridge-42 | Linux | 3 | 01-06 11:07 | 01-06 11:07 | - | |
| #637 | Resolved | HIGH | Process executes an obfuscated command for fetching remote f... | in-bridge-40 | Linux | 1 | 01-06 11:07 | 01-06 11:07 | - | |
| #636 | Resolved | HIGH | 'Process Injection - 288965039' along with 1 other issue gen... | inbridge-ubt-24 | Linux | 2 | 01-06 11:01 | 01-06 11:07 | - | |
| #635 | Resolved | HIGH | 'Staged Malware Activity - 2123359011' along with 2 other is... | inbridge-42 | Linux | 3 | 01-06 11:01 | 01-06 11:01 | - | |
| #634 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | in-bridge-40 | Linux | 3 | 01-06 11:01 | 01-06 11:01 | - | |
| #633 | Resolved | HIGH | Shared object injection using LD_PRELOAD on a shell command | inbridge-ubt-24 | Linux | 1 | 01-06 11:01 | 01-06 11:01 | - | |
| #632 | Resolved | HIGH | 'Persistency - 779040014' along with 1 other issue generated... | inbridge-ubt-24 | Linux | 2 | 01-06 11:00 | 01-06 11:00 | - | |
| #631 | Resolved | HIGH | Shared object injection using LD_PRELOAD on a shell command | in-bridge-40 | Linux | 1 | 01-06 10:53 | 01-06 11:00 | - | |
| #630 | Resolved | HIGH | 'Persistency - 779040014' along with 5 other issues generate... | inbridge-ubt-24 | Linux | 6 | 01-06 10:51 | 01-06 11:00 | - | |
| #629 | Resolved | HIGH | 'Process Injection - 288965039' along with 4 other issues ge... | inbridge-42 | Linux | 5 | 01-06 10:50 | 01-06 11:00 | - | |
| #628 | Resolved | HIGH | 'Staged Malware Activity - 2123359011' along with 2 other is... | inbridge-ubt-24 | Linux | 3 | 01-06 10:48 | 01-06 10:50 | - | |
| #627 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | inbridge-42 | Linux | 3 | 01-06 10:48 | 01-06 10:50 | - | |
| #626 | Resolved | HIGH | 'Process Injection - 288965039' along with 3 other issues ge... | in-bridge-40 | Linux | 4 | 01-06 10:47 | 01-06 10:50 | - | |
| #625 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | inbridge-42 | Linux | 3 | 01-06 10:47 | 01-06 10:47 | - | |
| #624 | Resolved | HIGH | 'Process Injection - 288965039' along with 1 other issue gen... | in-bridge-40 | Linux | 2 | 01-06 10:47 | 01-06 10:47 | - | |
| #623 | Resolved | HIGH | 'Persistency - 779040014' along with 1 other issue generated... | inbridge-ubt-24 | Linux | 2 | 01-06 10:45 | 01-06 10:47 | - | |
| #622 | Resolved | HIGH | Shared object injection using LD_PRELOAD on a shell command | in-bridge-40 | Linux | 1 | 01-06 10:40 | 01-06 10:43 | - | |
| #621 | Resolved | HIGH | 'Persistency - 779040014' along with 2 other issues generate... | inbridge-ubt-24 | Linux | 3 | 01-06 10:40 | 01-06 10:43 | - | |
| #620 | Resolved | HIGH | 'Process Injection - 288965039' along with 4 other issues ge... | inbridge-ubt-24 | Linux | 5 | 01-06 10:20 | 01-06 10:30 | - | |
| #619 | Resolved | HIGH | 'Persistency - 779040014' along with 2 other issues generate... | inbridge-42 | Linux | 3 | 01-06 09:53 | 01-06 10:42 | - | |
| #618 | Resolved | HIGH | 'MEMFD Process - 1952645876' along with 5 other issues gener... | inbridge-ubt-24 | Linux | 6 | 01-06 09:43 | 01-06 10:10 | - | |
| #617 | Resolved | HIGH | 'Persistency - 779040014' along with 5 other issues generate... | in-bridge-40 | Linux | 6 | 01-06 09:39 | 01-06 09:41 | - | |
| #616 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | inbridge-ubt-24 | Linux | 3 | 01-06 09:36 | 01-06 09:41 | - | |
| #615 | Resolved | HIGH | 'Process Injection - 288965039' along with 4 other issues ge... | inbridge-42 | Linux | 5 | 01-06 09:36 | 01-06 09:41 | - | |
| #614 | Resolved | HIGH | 'Process Injection - 288965039' along with 1 other issue gen... | in-bridge-40 | Linux | 2 | 01-06 09:32 | 01-06 09:36 | - | |
| #612 | Resolved | HIGH | Shared object injection using LD_PRELOAD on a shell command | inbridge-ubt-24 | Linux | 1 | 01-06 09:30 | 01-06 09:36 | - | |
| #611 | Resolved | HIGH | 'Staged Malware Activity - 2123359011' along with 7 other is... | inbridge-42 | Linux | 8 | 01-06 09:30 | 01-06 09:36 | - | |
| #610 | Resolved | HIGH | 'Persistency - 779040014' along with 1 other issue generated... | inbridge-ubt-24 | Linux | 2 | 01-06 09:18 | 01-06 09:24 | - | |
| #609 | Resolved | HIGH | 'Process Injection - 288965039' along with 4 other issues ge... | inbridge-42 | Linux | 5 | 01-06 09:18 | 01-06 09:23 | - | |
| #608 | Resolved | HIGH | 'Process Injection - 288965039' along with 2 other issues ge... | in-bridge-40 | Linux | 3 | 01-06 09:18 | 01-06 09:23 | - | |
| #607 | Resolved | HIGH | 'Persistency - 779040014' along with 1 other issue generated... | in-bridge-40 | Linux | 2 | 01-06 09:05 | 01-06 09:05 | - | |
| #606 | Resolved | HIGH | 'Persistency - 779040014' along with 8 other issues generate... | inbridge-ubt-24 | Linux | 9 | 01-06 08:48 | 01-06 09:06 | - | |
| #605 | Resolved | HIGH | 'Persistency - 456694134' along with 8 other issues generate... | inbridge-42 | Linux | 9 | 01-06 08:48 | 01-06 09:05 | - | |
| #604 | Resolved | HIGH | Remote shell persistency acquired using the crontab mechanis... | inbridge-42 | Linux | 1 | 01-06 08:39 | 01-06 08:43 | - | |
| #603 | Resolved | HIGH | Suspicious cron job using a base64 payload | in-bridge-40 | Linux | 1 | 01-06 08:39 | 01-06 08:44 | - | |
| #602 | Resolved | HIGH | 'Process Injection - 288965039' along with 4 other issues ge... | inbridge-ubt-24 | Linux | 5 | 01-06 08:31 | 01-06 08:43 | - | |
| #601 | Resolved | HIGH | 'Process Injection - 288965039' along with 1 other issue gen... | inbridge-42 | Linux | 2 | 01-06 08:30 | 01-06 08:30 | - | |
| #600 | Resolved | HIGH | 'Process Injection - 288965039' along with 5 other issues ge... | inbridge-ubt-24 | Linux | 6 | 01-06 08:30 | 01-06 08:30 | - | |
| #599 | Resolved | HIGH | 'Process Injection - 288965039' along with 6 other issues ge... | in-bridge-40 | Linux | 7 | 01-06 07:53 | 01-06 08:30 | - | |
| #598 | Resolved | HIGH | 'Persistency - 779040014' along with 5 other issues generate... | inbridge-ubt-24 | Linux | 6 | 01-06 07:53 | 01-06 08:30 | - | |
| #597 | Resolved | HIGH | 'Staged Malware Activity - 2123359011' along with 2 other is... | inbridge-42 | Linux | 3 | 01-06 07:38 | 01-06 07:39 | - |