From 504a2309b43c4ee2c6f11fb5dc75e6897add2db6 Mon Sep 17 00:00:00 2001 From: Prince Chaddha Date: Fri, 28 Oct 2022 10:16:41 +0530 Subject: [PATCH] Update sshd-dropbear-detect.yaml --- network/detection/sshd-dropbear-detect.yaml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/network/detection/sshd-dropbear-detect.yaml b/network/detection/sshd-dropbear-detect.yaml index b32620bf97..098a24b3ee 100644 --- a/network/detection/sshd-dropbear-detect.yaml +++ b/network/detection/sshd-dropbear-detect.yaml @@ -18,11 +18,12 @@ network: host: - "{{Hostname}}" - "{{Host}}:22" - matchers-condition: and + matchers: - type: word words: - "dropbear" + extractors: - type: regex regex: