Classification:
compliance
Framework:
Control:
To access protected files and directories, attackers may attempt to change the permissions on these files and directories.
This detection monitors the permissions changes to sensitive files and directories such as /etc/
and /sbin/
.