Skip to content

TODO: fake strings and honeypot canary shenanigans. #6

@fullspectrumdev

Description

@fullspectrumdev

Related to #5 it might be amusing to have some fake strings in there "in the clear" (perhaps pointing at canary tokens of some form) to act as misdirection.

Also perhaps the agent, if ran without any args, should beacon to a canary token of some form to indicate its been ran in some kind of sandbox. This specific method has proved useful in the past for detecting stuff like Palo Alto boxes intercepting downloads.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions