linux-malware icon indicating copy to clipboard operation
linux-malware copied to clipboard

Tracking interesting Linux (and UNIX) malware. Send PRs

Results 250 linux-malware issues
Sort by recently updated
recently updated
newest added

### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://www.aldeid.com/wiki/Exploits/proftpd-1.3.3c-backdoor ### Industry reference ProFTPd ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...

new
missing:tactics
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1027.002
missing:tag:RedirectionToNull
missing:tag:T1205
missing:tag:JavaScript
missing:tag:T1027.004
missing:tag:T1071.002

### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://www.webmin.com/exploit.html ### Industry reference Webmin ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...

new
missing:tactics
missing:tag:T1005
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1567
missing:tag:T1027.002

### Area Breach reports ### Parent threat _No response_ ### Finding https://www.sec.gov/Archives/edgar/data/1609711/000160971121000122/gddyblogpostnov222021.htm ### Industry reference GoDaddy ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No response_...

new
missing:tactics

### Area Press/academia ### Parent threat _No response_ ### Finding https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence/cyber-year-in-retrospect/yir-cyber-threats-report-download.pdf ### Industry reference _No response_ ### Malware reference LootRat PLEAD TSCookie RotaJakiro1 ### Actor reference Red Djinn Red Nue...

missing:tactics
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1053.003
missing:tag:T1560
missing:tag:T1518
missing:tag:T1021.004
missing:tag:IRC

### Area Malware PoCs ### Parent threat _No response_ ### Finding https://github.com/io-tl/degu-lib ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...

new
missing:tactics
missing:tag:T1005
missing:tag:T1048
missing:tag:T1071.001
missing:tag:T1567
missing:tag:T1573
missing:tag:Non-persistentStorage
missing:tag:T1059.006
missing:tag:eBPF
missing:tag:wltm

### Area Malware binaries ### Parent threat _No response_ ### Finding https://samples.vx-underground.org/APTs/2021/2021.10.11/ ### Industry reference _No response_ ### Malware reference FontOnLake [/malware/binaries/FontOnLake](../tree/main/malware/binaries/FontOnLake) ### Actor reference _No response_ ### Component Linux...

new
missing:tactics
missing:tag:T1048
missing:tag:T1070.003
missing:tag:T1071.001
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573

### Area Malware reports ### Parent threat _No response_ ### Finding https://vblocalhost.com/conference/presentations/shades-of-red-redxor-linux-backdoor-and-its-chinese-origins/ ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...

new
missing:tactics
missing:tag:T1048
missing:tag:T1057
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1070.006

### Area Malware reports ### Parent threat _No response_ ### Finding https://twitter.com/malwrhunterteam/status/1467264298237972484 ### Industry reference Cerber ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No response_...

new
missing:tactics
missing:tag:T1048
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1567
missing:tag:T1573
missing:tag:T1027.002
missing:tag:T1560

### Area Malware reports ### Parent threat _No response_ ### Finding https://blogs.blackberry.com/en/2021/12/reverse-engineering-ebpfkit-rootkit-with-blackberrys-free-ida-processor-tool ### Industry reference attack:T1205.002:Socket Filters ebpfkit ### Malware reference _No response_ ### Actor reference _No response_ ### Component...

new
missing:tactics
missing:tag:T1005
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1027.002
missing:tag:T1560
missing:tag:eBPF

### Area Malware reports ### Parent threat _No response_ ### Finding https://unit42.paloaltonetworks.com/hildegard-malware-teamtnt/ ### Industry reference Hildegard TeamTNT ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...

new
missing:tactics
missing:tag:T1005
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1021.002
missing:tag:T1053.007
missing:tag:T1574.006
missing:tag:T1609
missing:tag:T1610