Detections

Explore public detection logic contributed by the community across SIEM and rule languages.

4 detections

This rule detects potentially malicious command execution initiated within Claude Code's zsh shell-snapshot environment on macOS. It triggers when a zsh process executes a command via the internal shell-snapshot wrapper and subsequently performs high-risk activities such as credentialized HTTP requests, unauthorized data exfiltration/upload, download-and-execute shell chains, tunneling (e.g., ngrok, cloudflared, SSH port forwarding), persistence mechanism manipulation (e.g., LaunchAgents/LaunchDaemons, PlistBuddy), credential access (e.g., keychain queries), or defense evasion techniques (e.g., clearing quarantine attributes or ad-hoc codesigning).
avatar
Duo Tech@duotech
avatar
Detections.ai Community
2 months ago
4026
Detects a Claude Code shell-snapshot source invocation followed by additional chained commands (e.g. curl, jq, eval) rather than a clean startup guard, indicating anomalous use of the coding agent's session-init mechanism to smuggle in follow-on actions.
avatar
Duo Tech@duotech
avatar
Detections.ai Community
2 months ago
206
Detects a python3 script executed from /tmp under a zsh parent with command-line indicators of network activity (URLs, sockets, requests/urllib, curl/wget, or tunnel tool names), indicating a coding-agent-staged script establishing outbound network or tunnel connections.
avatar
Duo Tech@duotech
avatar
Detections.ai Community
2 months ago
105
Detects a python3 script executed from /tmp under a zsh parent with command-line indicators of network activity (URLs, sockets, requests/urllib, curl/wget, or tunnel tool names), indicating a coding-agent-staged script establishing outbound network or tunnel connections.
avatar
Duo Tech@duotech
avatar
Detections.ai Community
2 months ago
001