From 52f56115b1491c8585868df564f0626436aa923e Mon Sep 17 00:00:00 2001 From: pussycat0x <65701233+pussycat0x@users.noreply.github.com> Date: Sat, 1 Jun 2024 23:53:49 +0530 Subject: [PATCH] minor - update --- .../{bitvise-detect.yaml => bitvise-ssh-detect.yaml} | 9 ++++----- 1 file changed, 4 insertions(+), 5 deletions(-) rename network/detection/{bitvise-detect.yaml => bitvise-ssh-detect.yaml} (76%) diff --git a/network/detection/bitvise-detect.yaml b/network/detection/bitvise-ssh-detect.yaml similarity index 76% rename from network/detection/bitvise-detect.yaml rename to network/detection/bitvise-ssh-detect.yaml index 59125af37c..7ea2c93b37 100644 --- a/network/detection/bitvise-detect.yaml +++ b/network/detection/bitvise-ssh-detect.yaml @@ -1,15 +1,14 @@ id: bitvise-detect info: - name: Bitvise Service - Detect + name: SSH Bitvise Service - Detect author: abdullahisik severity: info description: | - Bitvise service was detected. + Bitvise SSH service was detected. reference: - https://www.bitvise.com/ - https://vulners.com/openvas/OPENVAS:1361412562310813387 - classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cwe-id: CWE-200 @@ -17,7 +16,7 @@ info: metadata: shodan-query: product:"bitvise" max-request: 1 - tags: seclists,network,ssh,bitvise,detect + tags: network,ssh,bitvise,detect tcp: - host: @@ -32,4 +31,4 @@ tcp: extractors: - type: regex regex: - - "SSH-([0-9.]+)-([0-9.]+) .*" + - "SSH([-0-9.]+) FlowSsh: Bitvise ([A-Z a-z()]+) ([0-9.]+)" \ No newline at end of file