Skip to content

Hide Navigation Hide TOC

Shell Execution via Git - Linux (47b3bbd4-1bf7-48cc-84ab-995362aaa75a)

Detects the use of the "git" utility to execute a shell. Such behavior may be associated with privilege escalation, unauthorized command execution, or to break out from restricted environments.

Cluster A Galaxy A Cluster B Galaxy B Level
Shell Execution via Git - Linux (47b3bbd4-1bf7-48cc-84ab-995362aaa75a) Sigma-Rules Command and Scripting Interpreter - T1059 (7385dfaf-6886-4229-9ecd-6fd678040830) Attack Pattern 1