Skip to content

Instantly share code, notes, and snippets.

@Fsero
Created December 3, 2017 17:23
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save Fsero/5fd655d03d8c246633407fb22afa1d8b to your computer and use it in GitHub Desktop.
Save Fsero/5fd655d03d8c246633407fb22afa1d8b to your computer and use it in GitHub Desktop.
{
Activities: [
{
@timestamp: "2017-09-01T01:15:07.143824471Z",
activity: "bash -c uname -a",
containerid: "6d7e2680e0d3",
pid: "20855",
user: "root"
}
],
Country: "Germany",
FinishedAt: "2017-09-01T01:24:40Z",
ID: "1504228507000-Vultr",
Offenders: [
{
@timestamp: "2017-09-01T01:24:40Z",
containerid: "6d7e2680e0d3",
country: "Czech Republic",
ip: "91.195.103.215",
location: {
lat: 50.071201,
lon: 14.2758
},
password: "123456 ",
successful: true,
user: "root "
}
],
Provider: "Vultr",
StartedAt: "2017-09-01T01:15:07.143818446Z",
Triggered: " Alert Shell spawned in a container other than entrypoint
(user=root ssh (id=6d7e2680e0d3)
ssh (id=6d7e2680e0d3)
shell=bash parent=sshd cmdline=bash -c uname -a)"
},
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment