🐙 https://github.com/mthcht
🐦 https://x.com/mthcht
📰 https://mthcht.medium.com
Identifiy hexadecimal IP addresses format in command lines with a "simple" regex (some default behaviors to exclude)
Identifiy hexadecimal IP addresses format in command lines with a "simple" regex (some default behaviors to exclude)
This query Extracts common special caracters from the process command line, counts occurrences, calculates ratio, and return commands with more than 20% specials caracters in it, could catch the quote insertions and url transformers techniques
This query Extracts common special caracters from the process command line, counts occurrences, calculates ratio, and return commands with more than 20% specials caracters in it, could catch the quote insertions and url transformers techniques