Back to cases

Live public case

Attempted exploitation

Last activity Oct 5, 2:15:46 PM PDT

highFailed

Evidence-grounded assessment

Failed

Request contains shell metacharacters and command tokens

Protected workloads
One protected workload
Progression
Within-workload activity
Severity basis
Maximum incident posture

Observed impact

    Recommended actions

      Attack timeline

      2 incident threads

      Live progression remains visible; PII, native endpoints, hashes, and private identities do not.

      1. 1
        Attempted exploitationopen

        Request contains shell metacharacters and command tokens

      2. 2
        Attempted exploitationopen

        Request contains shell metacharacters and command tokens

      Relationship reasoning

      Same source cluster86%

      same privacy-preserving traffic source cluster and target within a bounded time window