dc05f1d8f3
* [New Rule] Sus Network Activity from Unknown Executable * Update command_and_control_suspicious_network_activity_from_unknown_executable.toml * Update rules/linux/command_and_control_suspicious_network_activity_from_unknown_executable.toml Co-authored-by: Jonhnathan <26856693+w0rk3r@users.noreply.github.com> * Update rules/linux/command_and_control_suspicious_network_activity_from_unknown_executable.toml Co-authored-by: Jonhnathan <26856693+w0rk3r@users.noreply.github.com> * added endgame support, changed min stack comment * Update rules/linux/command_and_control_suspicious_network_activity_from_unknown_executable.toml Co-authored-by: Jonhnathan <26856693+w0rk3r@users.noreply.github.com> --------- Co-authored-by: Jonhnathan <26856693+w0rk3r@users.noreply.github.com>