linux-malware icon indicating copy to clipboard operation
linux-malware copied to clipboard

[Intel]: https://twitter.com/inversecos/status/1527188391347068928

Open timb-machine opened this issue 3 years ago • 0 comments

Area

Defensive tools

Parent threat

Persistence, Defense Evasion

Finding

https://twitter.com/inversecos/status/1527188391347068928

Industry reference

uses:BPF attack:T1036:Masquerading attack:T1070:Indicator Removal on Host

Malware reference

BPFDoor Tricephalic Hellkeeper Unix.Backdoor.RedMenshen JustForFun

Actor reference

DecisiveArchitect

Component

Linux, Solaris

Scenario

No response

Scenario variation

Device application sandboxing

timb-machine avatar May 19 '22 08:05 timb-machine