Security Command Center 會對 Cloud Run 資源執行執行階段和控制平面監控。如需這些威脅的建議回應方式,請參閱「回應 Cloud Run 威脅發現」。
執行階段發現項目類型
Cloud Run Threat Detection 可提供下列執行階段偵測結果:
Execution: Added Malicious Binary Executed
Execution: Added Malicious Library Loaded
Execution: Built in Malicious Binary Executed
Execution: Container Escape
Execution: Kubernetes Attack Tool Execution
Execution: Local Reconnaissance Tool Execution
Execution: Malicious Python executed
Execution: Modified Malicious Binary Executed
Execution: Modified Malicious Library Loaded
Malicious Script Executed
Malicious URL Observed
Reverse Shell
Unexpected Child Shell
控制層發現項目類型
Event Threat Detection 可提供下列控制層偵測結果:
Execution: Cryptomining Docker Image
Impact: Cryptomining Commands
Privilege Escalation: Default Compute Engine Service Account SetIAMPolicy
後續步驟
- 瞭解 Cloud Run Threat Detection。
- 瞭解 Event Threat Detection。
- 瞭解如何回應 Cloud Run 威脅發現。
- 請參閱威脅發現項目索引。