Skip to content

v1.2

Compare
Choose a tag to compare
@dmb2168 dmb2168 released this 17 Aug 20:25
· 4 commits to main since this release
  • Add detection for UPX packed binaries
  • Add detection for kscan utility
  • Fix false positive caused by truncated ps output due to terminal column width
  • Fix false positive where log files can show up in var/crash when the primary disk fills up
  • Amend language when files with nobody:root permissions are found to recommend manual review rather than automatically flagged the system as compromised