Skip to content

Hide Navigation Hide TOC

Potentially Suspicious Inline JavaScript Execution via NodeJS Binary (8537c866-072e-460d-bfff-aaf39cbd73d3)

Detects potentially suspicious inline JavaScript execution using Node.js with specific keywords in the command line.

Cluster A Galaxy A Cluster B Galaxy B Level
JavaScript - T1059.007 (0f4a0c76-ab2d-4cb0-85d3-3f0efb8cba0d) Attack Pattern Potentially Suspicious Inline JavaScript Execution via NodeJS Binary (8537c866-072e-460d-bfff-aaf39cbd73d3) Sigma-Rules 1
Command and Scripting Interpreter - T1059 (7385dfaf-6886-4229-9ecd-6fd678040830) Attack Pattern JavaScript - T1059.007 (0f4a0c76-ab2d-4cb0-85d3-3f0efb8cba0d) Attack Pattern 2