Monitoring remote file transfer utilities like rsync is essential in detecting stealthy lateral movement or data exfiltration across Unix-based environments. But not all rsync usage is equal. In some cases, it can silently launch shell processes under the hood—making threat detection harder for defenders. That’s where Uncoder AI’s Full Summary becomes invaluable. When used alongside […] The post Investigating Suspicious Rsync Shell Activity with Uncoder AI and Carbon Black Query Language appeared first on SOC Prime.