From f27466ef2bea299d959ebabc4478f9d5f0e93fcc Mon Sep 17 00:00:00 2001 From: Florian Roth Date: Fri, 4 Nov 2022 10:49:01 +0100 Subject: [PATCH] Update rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml Co-authored-by: Nasreddine Bencherchali <8741929+nasbench@users.noreply.github.com> --- .../network_connection/net_connection_lnx_ngrok_tunnel.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml b/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml index 022801129..be22b5f2c 100644 --- a/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml +++ b/rules/linux/network_connection/net_connection_lnx_ngrok_tunnel.yml @@ -1,4 +1,4 @@ -title: Communication To Ngrok Tunneling Service +title: Communication To Ngrok Tunneling Service - Linux id: 19bf6fdb-7721-4f3d-867f-53467f6a5db6 status: experimental description: Detects an executable accessing an ngrok tunneling endpoint, which could be a sign of forbidden exfiltration of data exfiltration by malicious actors