Friday, September 10, 2021

Threat Hunt - Proxy C2 IP with PHP

potential proxy #threathunt idea

post or put to urls that contain ip address and php

domain matches '^(?:[0-9]{1,3}\.){3}[0-9]{1,3}$'
method in ('POST', 'PUT')
urlpath endswith '.php'

1 comment:

  1. I know of a group of private investigators who can help you with they are also hackers but prefer to be called private investigators They can help with your bitcoin issues and your clients will be happy doing business with you,they can also help yo with your bad credit score,hacking into phones,binary recovery,wiping criminal records,increase school score, stolen files in your office or school,blank atm etc. Just name it and you will live a better life
    Contact +1(407) 777-4240