turbinia icon indicating copy to clipboard operation
turbinia copied to clipboard

Webshell Analyzer Job

Open wajihyassine opened this issue 3 years ago • 2 comments

Create a new Job that uses open source tool https://github.com/tstillz/webshell-scan to scan for webshells.

Context: https://medium.com/swlh/web-shell-hunting-meet-the-web-shell-analyzer-f062686b443b

wajihyassine avatar Aug 04 '22 17:08 wajihyassine

There is a newer version of the webshell-scan called webshell-analyzer that decoding and attribute analysis, which could lead to better detection

https://github.com/tstillz/webshell-analyzer

rjcolonna avatar Aug 23 '22 19:08 rjcolonna

Here's another webshell scanner tool: https://github.com/nsacyber/Mitigating-Web-Shells

AFAICT, the license should be compatible as it is waived via creative commons, but we should double check that: https://github.com/nsacyber/Mitigating-Web-Shells/blob/master/LICENSE.md

aarontp avatar Jan 10 '23 22:01 aarontp