Installation of WSL Kali-Linux (eca8ae39-5c3c-4321-b538-9e64fe25822e)
Detects installation of Kali Linux distribution through Windows Subsystem for Linux (WSL). Attackers may use Kali Linux WSL to leverage its penetration testing tools and capabilities for malicious purposes.
| Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
|---|---|---|---|---|
| Command and Scripting Interpreter - T1059 (7385dfaf-6886-4229-9ecd-6fd678040830) | Attack Pattern | Installation of WSL Kali-Linux (eca8ae39-5c3c-4321-b538-9e64fe25822e) | Sigma-Rules | 1 |