Reverse shell is a way that attackers gain access to a victim’s system. In this article, you’ll learn how this attack works and how you can detect it using Falco, a CNCF project, as well as Sysdig Secure. Sometimes, an application vulnerability can be exploited in a way that allows an attacker to establish a reverse shell connection, which grants them interactive access to the system.
Be it be on-premise or in Azure, monitoring your resources is extremely important. While the popular monitoring tool to use on premise remains to be SCOM, many organizations with a presence in the cloud have started to explore Azure Monitor to fulfil their monitoring needs in Azure. Recently, we discussed Azure Monitor and its capabilities extensively in our Azure Monitor Learning Path blog series.