diff --git a/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml b/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml index 022801129..be22b5f2c 100644 --- a/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml +++ b/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml @@ -1,4 +1,4 @@ -title: Communication To Ngrok Tunneling Service +title: Communication To Ngrok Tunneling Service - Linux id: 19bf6fdb-7721-4f3d-867f-53467f6a5db6 status: experimental description: Detects an executable accessing an ngrok tunneling endpoint, which could be a sign of forbidden exfiltration of data exfiltration by malicious actors