Back to evidence

Sanitized live incident

Attempted exploitation

Native source identity and targetable endpoints are private.

highopen
Confidence
88%
First seen
Aug 16, 12:05:20 PM PDT
Evidence through
Aug 16, 12:07:08 PM PDT
AI status
Outside window
AI investigation is Outside window

Deterministic signals remain live while the bounded assessment completes.

Observed impact

    Deterministic signals

    Http.command injection attempt88%

    Request contains shell metacharacters and command tokens

    16 observations · 12 http