Skip to content

v1.3

Compare
Choose a tag to compare
@johnmcbride johnmcbride released this 12 Feb 18:43
· 1 commit to master since this release

Mitigations for false positives:

  • removed detection of /etc/passwd from shell history
  • disabled scanning of binary files (i.e. .gif) for text artifacts
  • selective scanning of .xml files in the bookmarks folder

New detections:

  • added scanning for php webshells under /var/vpn/themes and subdirectories

Report format and content:

  • added a scan summary paragraph to the top of the output report
  • include full text of detected .xml files in the report

FAQ:

  • added a FAQ item on disk imaging and a sample script for imaging a remote NS device