Backdoored Source
Zeek repo lives here https://github.com/zeek/zeek
The original source tag here https://github.com/zeek/zeek/releases/tag/v2.0

Clone that tag down. I used beyond compare to do a folder diff on the sourcetree. Uh oh whats up with that file I wonder.


The Solution
scripts/base/protocols/conn/main.bro
Last updated
Was this helpful?