linux-malware icon indicating copy to clipboard operation
linux-malware copied to clipboard

Tracking interesting Linux (and UNIX) malware. Send PRs

Results 250 linux-malware issues
Sort by recently updated
recently updated
newest added

### Area Offensive tools ### Parent threat Credential Access, Collection ### Finding https://github.com/SkyperTHC/bpf-keylogger ### Industry reference uses:eBPF attack:T1417.001:Keylogging ### Malware reference _No response_ ### Actor reference _No response_ ### Component...

new
missing:tag:T1005
missing:tag:T1048
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1567
missing:tag:T1573

### Area Malware reports ### Parent threat _No response_ ### Finding https://imgur.com/a/lAQ1tMQ ### Industry reference HelloBot (by malwaremustdie.org) ### Malware reference _No response_ ### Actor reference _No response_ ### Component...

new
missing:tactics

### Area Defensive tools ### Parent threat Defense Evasion ### Finding https://github.com/Achiefs/fim ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...

new
missing:tag:T1005
missing:tag:T1048
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590

### Area Malware source ### Parent threat Defense Evasion ### Finding https://github.com/gianlucaborello/libprocesshider ### Industry reference uses:ProcessTreeSpoofing attack:T1574.006:Dynamic Linker Hijacking ### Malware reference libprocesshider ### Actor reference _No response_ ### Component...

new
missing:tag:T1005
missing:tag:T1048
missing:tag:T1057
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
missing:tag:T1548.003
missing:tag:T1027.004
missing:tag:T1046

### Area Malware source ### Parent threat Defense Evasion ### Finding https://github.com/chenkaie/junkcode/blob/master/xhide.c ### Industry reference uses:ProcessTreeSpoofing ### Malware reference XHide ### Actor reference _No response_ ### Component Linux ### Scenario...

new
missing:submodule

### Area Defensive techniques ### Parent threat Defense Evasion ### Finding https://blog.virustotal.com/2023/12/sigma-rules-for-linux-and-macos_20.html ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...

missing:malware
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1053.003
missing:tag:wltm

### Area Offensive tools ### Parent threat Persistence ### Finding https://github.com/MatheuZSecurity/D3m0n1z3dShell ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux ###...

good first issue
new
missing:tag:T1005
missing:tag:T1048
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1027.002
missing:tag:T1560
missing:tag:Non-persistentStorage
missing:tag:T1222
missing:tag:T1548.001
missing:tag:T1574.006
missing:tag:T1548.003
missing:tag:T1037.004

### Area Offensive tools ### Parent threat Privilege Escalation ### Finding https://github.com/Frissi0n/GTFONow ### Industry reference attack:T1548:Abuse Elevation Control Mechanism ### Malware reference _No response_ ### Actor reference _No response_ ###...

new
missing:tag:T1005
missing:tag:T1048
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1053.003
missing:tag:T1059.006
missing:tag:T1574.006
missing:tag:T1548.003

### Area Malware reports ### Parent threat _No response_ ### Finding https://imgur.com/a/SSKmu ### Industry reference Rebirth Vulcan (by malwaremustdie.org) ### Malware reference _No response_ ### Actor reference _No response_ ###...

new
missing:tactics

### Area Defensive tools ### Parent threat Defense Evasion ### Finding https://github.com/nikhilh-20/ELFEN ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...

new
missing:tag:T1005
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1059.006
missing:tag:T1053.007
missing:tag:T1609
missing:tag:T1610
missing:tag:wltm