Monitor for newly executed processes that can aid in sniffing network traffic to capture information about an environment.
Monitor executed commands and arguments for actions that aid in sniffing network traffic to capture information about an environment.
| Data Component | Name | Channel |
|---|---|---|
| Process Creation (DC0032) | Process | None |
| Command Execution (DC0064) | Command | None |