grayddq / gscan Goto Github PK
View Code? Open in Web Editor NEW本程序旨在为安全应急响应人员对Linux主机排查时提供便利,实现主机侧Checklist的自动全面化检测,根据检测结果自动数据聚合,进行黑客攻击路径溯源。
本程序旨在为安全应急响应人员对Linux主机排查时提供便利,实现主机侧Checklist的自动全面化检测,根据检测结果自动数据聚合,进行黑客攻击路径溯源。
Thankyou, Please add the function of sending reports by automatic mail,Task Sending Report.
I tried to run GScan on the desktop version of Ubuntu 20.04 and 22.04, the instruction is:
sudo python3 GScan.py
The result both includes:
[1][风险] 黑客在未知时间,进行了SSHwrapper 后门植入,/usr/sbin/sshd被篡改,文件非可执行文件
But sshd file does not exist. See below:
ls -al /usr/sbin/sshd
ls: cannot access '/usr/sbin/sshd': No such file or directory
Is it a false alarm?
我有一个用户home目录下文件过多,导致gscan卡住,而且我确定这个用户的home是安全的。
能不能设置跳过某个用户的home目录扫描?
downloads\gscan-master.zip360检测存在病毒: 后门程序(Backdoor.Win32.WebShell.C)
Local scanning requires installation of running environment, which is sometimes troublesome.
Hello,
My domain stillnorth.net is listed in this repository in "kazy.txt" and I assume this may be one of the reasons why my domain is being blocked by several antivirus softwares. Let me know what I can do to prove to you that this is not a malicious domain...
Have a nice day
Phanuel
是否可以考虑加busybox进去。
我们有一个基于CentOS7的小集群,有10个计算节点,/home是各节点共享目录之一。我在各节点使用GScan扫描的时候,很快各节点的内存都被耗尽(~160G),从晚上跑到第二天早上也一直卡在[4]各用户目录安全扫描。有什么解决办法?
I put a word Trojan to a test server,then I run your script, But It can't check a word Trojan. Why?
a word Trojan is:
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.