neargle

Results 38 comments of neargle

cdk output not all in stdout: ``` ➜ cdk ./cdk_linux_amd64_thin_upx eva > /tmp/1 2022/05/18 10:33:51 current dir: /root/cdk 2022/05/18 10:33:51 current user: root uid: 0 gid: 0 home: /root 2022/05/18...

> To prebuilt kernel module for most popular distributions (e.g. Ubuntu 20.04) include them in CDK binary and leave note on how to build kernel module for other kernel versions....

@nikitastupin I recommend building EXP for Kernel Version 3.10.107. After simple statistics, I found that the number of servers with Kernel Version 3.10.107 on the cloud is larger than that...

我这边的环境没办法复现呀,有纯文本的返回吗?

@caidongyun 是指eventlog被删除的情况吗?

暂时不知道调用 wevtapi.dll 能不能实时监控到日志删除的记录行为。 @caidongyun 请问有什么较为优雅的监控日志删除的方法吗?