pure-ftpd: Attempt to access invalid directory
Description
pure-ftpd: Attempt to access invalid directory
Query · wazuh
match="[INFO] Can't change directory to"
Fires when
Wazuh evaluates a chain top-down. Every rule above this one must match on the same event before this rule is tested at all.
-
decoded_as=pure-ftpd -
match="[INFO] Can't change directory to"
Rule dependencies
Depends on
-
composes · Wazuh if_sid
11300