procfs/bash tricks and detecting Cowrie

Yep, I’m messing with Cowrie again. Just a quick post, about another category of post-authentication detection mechanisms I found for Cowrie. These should detect honeypots that the previous hassh trick fails to detect. This time, due to how the “procfs” on Linux works, and some bash fun. There are actually a couple of detection methods …