linux-malware
linux-malware copied to clipboard
Tracking interesting Linux (and UNIX) malware. Send PRs
[Intel]: https://portswigger.net/daily-swig/backdoor-planted-in-php-git-repository-after-server-hack
### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://portswigger.net/daily-swig/backdoor-planted-in-php-git-repository-after-server-hack ### Industry reference PHP ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...
### Area Malware reports ### Parent threat _No response_ ### Finding https://www.intezer.com/blog/malware-analysis/linux-rekoobe-operating-with-new-undetected-malware-samples/ ### Industry reference _No response_ ### Malware reference Rekoobe ### Actor reference APT31 ### Component Linux ### Scenario...
### Area Malware reports ### Parent threat _No response_ ### Finding https://blog.sekoia.io/walking-on-apt31-infrastructure-footprints/ ### Industry reference https://github.com/timb-machine/linux-malware/issues/480 ### Malware reference Rekoobe TSH https://github.com/timb-machine/linux-malware/issues/481 ### Actor reference APT31 ### Component Linux ###...
### Area Malware reports ### Parent threat _No response_ ### Finding https://github.com/akamai/akamai-security-research/tree/main/malware/panchan ### Industry reference _No response_ ### Malware reference Pan-chan [/malware/binaries/pan-chan](../tree/main/malware/binaries/pan-chan) ### Actor reference _No response_ ### Component Linux...
### Area Malware reports ### Parent threat _No response_ ### Finding https://www.akamai.com/blog/security/new-p2p-botnet-panchan ### Industry reference _No response_ ### Malware reference Pan-chan https://github.com/timb-machine/linux-malware/issues/477 ### Actor reference _No response_ ### Component Linux...
### Area Malware reports ### Parent threat _No response_ ### Finding https://xorl.wordpress.com/2022/06/22/the-forgotten-suaveeyeful-freebsd-software-implant-of-the-equation-group/ ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...
### Area Malware reports ### Parent threat _No response_ ### Finding https://www.intezer.com/blog/malware-analysis/hiddenwasp-malware-targeting-linux-systems/ ### Industry reference _No response_ ### Malware reference HiddenWasp ### Actor reference _No response_ ### Component Linux ###...
### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://arstechnica.com/information-technology/2012/09/questions-abound-as-malicious-phpmyadmin-backdoor-found-on-sourceforge-site/ ### Industry reference PHPMyAdmin ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...
### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://dev.horde.org/h/jonah/stories/view.php?channel_id=1&id=155 ### Industry reference Horde Webmail ### Malware reference _No response_ ### Actor reference _No response_ ### Component...
### Area Malware PoCs ### Parent threat _No response_ ### Finding https://github.com/schrodyn/bad_UDP ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...