CVE-2023-22518 Exploitation Attempt - Suspicious Confluence Child Process (Linux) — Detection Rule

Detects exploitation attempt of CVE-2023-22518 (Confluence Data Center / Confluence Server), where an attacker can exploit vulnerable endpoints to e.g. create admin accounts and execute arbitrary commands.

Read the full analysis on IntelFusions