mirror of
https://github.com/JGoyd/ShadowShells.git
synced 2026-08-19 02:47:13 +02:00
Update README.md
This commit is contained in:
@@ -1,5 +1,8 @@
|
|||||||
# ShadowShells | Observed Indicators (Confirmed Malicious)
|
# ShadowShells | Observed Indicators (Confirmed Malicious)
|
||||||
|
|
||||||
|
> Known tools leave familiar footprints, but when they surface inside a live C2 mesh,
|
||||||
|
> the echoes change shape — and the signal becomes intelligence.
|
||||||
|
|
||||||
## Purpose
|
## Purpose
|
||||||
This package contains **sanitized traces and echoes** of observed entities | domains, UUIDs, processes, and signature strings | directly linked to confirmed command-and-control activity.
|
This package contains **sanitized traces and echoes** of observed entities | domains, UUIDs, processes, and signature strings | directly linked to confirmed command-and-control activity.
|
||||||
|
|
||||||
@@ -11,5 +14,9 @@ All data here is **metadata only**. No raw logs, PCAPs, or sensitive artifacts a
|
|||||||
- Consult `key_hits.txt` to track behaviors or patterns: shell anomalies, proxy/tunnel strings, beacon pulses.
|
- Consult `key_hits.txt` to track behaviors or patterns: shell anomalies, proxy/tunnel strings, beacon pulses.
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
## License
|
## License
|
||||||
**Defensive use only. Provided as-is. No warranty.**
|
**Defensive use only. Provided as-is. No warranty.**
|
||||||
|
|||||||
Reference in New Issue
Block a user