
Episode 6: Matt Graeber
Detection: Challenging Paradigms
00:00
Is the Service Desecrated Remotely?
Solike has developed a tool to detect services that are not necessarily 100% related. The service is used for persistencea frequently, right? Solike: If you don't go through this base condition and find all services, you just want to look for a every like,. One example might be, if a service is created by a process other than services dot x c, then that means that that service was created outside the like, approved r p process - which may have been our detection before.
Play episode from 01:17:40
Transcript


