SysMon AI

Audit Logs

120 events · click suspicious rows for details

TimestampPIDUserProcessSyscallTarget PathResultSeverity
1969-12-31 23:59:5857092postgresbashconnect/var/www/html/index.htmlALLOWEDLow
1969-12-31 23:59:5731167rootredis-serverconnect/home/ubuntu/.ssh/known_hostsALLOWEDLow
1969-12-31 23:59:5547933postgresshellcode.binchmod/etc/shadowDENIEDCritical
1969-12-31 23:59:5444310www-dataredis-serverfork/var/log/syslogALLOWEDLow
1969-12-31 23:59:5229580ubuntubashunlink/usr/bin/curlALLOWEDLow
1969-12-31 23:59:5120895www-datapython3unlink/tmp/cache.datALLOWEDLow
1969-12-31 23:59:4924087postgrescontainerdexecve/home/ubuntu/.ssh/known_hostsALLOWEDLow
1969-12-31 23:59:4831480postgrescronconnect/proc/self/mapsALLOWEDLow
1969-12-31 23:59:4621824ubuntunodeexecve/usr/bin/curlALLOWEDLow
1969-12-31 23:59:4532368rootredis-serveropen/tmp/cache.datALLOWEDLow
1969-12-31 23:59:4318669ubuntunginxread/proc/self/mapsALLOWEDLow
1969-12-31 23:59:4237128rootredis-serverexecve/etc/hostsDENIEDLow
1969-12-31 23:59:408141www-databashunlink/var/lib/postgres/dataALLOWEDLow
1969-12-31 23:59:3955435ubuntunodeunlink/home/ubuntu/.ssh/known_hostsALLOWEDLow
1969-12-31 23:59:3719525nodechromeopen/var/www/html/index.htmlALLOWEDLow
1969-12-31 23:59:36975postgrescronopen/usr/bin/curlALLOWEDLow
1969-12-31 23:59:3417060rootcontainerdchmod/tmp/cache.datALLOWEDLow
1969-12-31 23:59:3340990www-datacronwrite/var/lib/postgres/dataALLOWEDLow
1969-12-31 23:59:3129420rootchromeconnect/proc/self/mapsALLOWEDLow
1969-12-31 23:59:3036735ubunturedis-serverchmod/var/lib/postgres/dataALLOWEDLow
1969-12-31 23:59:2859402ubuntusystemdunlink/usr/bin/curlALLOWEDLow
1969-12-31 23:59:2711783nodechromechmod/var/www/html/index.htmlALLOWEDLow
1969-12-31 23:59:251257rootpostgresconnect/var/www/html/index.htmlALLOWEDLow
1969-12-31 23:59:2427291rootdockerfork/etc/hostsALLOWEDLow
1969-12-31 23:59:224657ubuntunodeunlink/var/lib/postgres/dataALLOWEDLow
Page 1 of 5