host-interaction/os/version

get kernel version

rule:
  meta:
    name: get kernel version
    namespace: host-interaction/os/version
    authors:
      - joakim@intezer.com
    scopes:
      static: function
      dynamic: thread
    att&ck:
      - Discovery::System Information Discovery [T1082]
    examples:
      - 7351f8a40c5450557b24622417fc478d:0x405438
  features:
    - and:
      - os: linux
      - or:
        - api: uname
        - and:
          - api: system
          - string: "uname"

last edited: 2023-11-24 10:34:28