v1.3
Mitigations for false positives:
- removed detection of /etc/passwd from shell history
- disabled scanning of binary files (i.e. .gif) for text artifacts
- selective scanning of .xml files in the bookmarks folder
New detections:
- added scanning for php webshells under /var/vpn/themes and subdirectories
Report format and content:
- added a scan summary paragraph to the top of the output report
- include full text of detected .xml files in the report
FAQ:
- added a FAQ item on disk imaging and a sample script for imaging a remote NS device