Skip to content

Hide Navigation Hide TOC

Installation of WSL Kali-Linux (eca8ae39-5c3c-4321-b538-9e64fe25822e)

Detects installation of Kali Linux distribution through Windows Subsystem for Linux (WSL). Attackers may use Kali Linux WSL to leverage its penetration testing tools and capabilities for malicious purposes.

Cluster A Galaxy A Cluster B Galaxy B Level
Command and Scripting Interpreter - T1059 (7385dfaf-6886-4229-9ecd-6fd678040830) Attack Pattern Installation of WSL Kali-Linux (eca8ae39-5c3c-4321-b538-9e64fe25822e) Sigma-Rules 1