linux-malware
linux-malware copied to clipboard
Tracking interesting Linux (and UNIX) malware. Send PRs
### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://www.aldeid.com/wiki/Exploits/proftpd-1.3.3c-backdoor ### Industry reference ProFTPd ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...
### Area Supply chain attacks ### Parent threat _No response_ ### Finding https://www.webmin.com/exploit.html ### Industry reference Webmin ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...
### Area Breach reports ### Parent threat _No response_ ### Finding https://www.sec.gov/Archives/edgar/data/1609711/000160971121000122/gddyblogpostnov222021.htm ### Industry reference GoDaddy ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No response_...
### Area Press/academia ### Parent threat _No response_ ### Finding https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence/cyber-year-in-retrospect/yir-cyber-threats-report-download.pdf ### Industry reference _No response_ ### Malware reference LootRat PLEAD TSCookie RotaJakiro1 ### Actor reference Red Djinn Red Nue...
### Area Malware PoCs ### Parent threat _No response_ ### Finding https://github.com/io-tl/degu-lib ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...
### Area Malware binaries ### Parent threat _No response_ ### Finding https://samples.vx-underground.org/APTs/2021/2021.10.11/ ### Industry reference _No response_ ### Malware reference FontOnLake [/malware/binaries/FontOnLake](../tree/main/malware/binaries/FontOnLake) ### Actor reference _No response_ ### Component Linux...
### Area Malware reports ### Parent threat _No response_ ### Finding https://vblocalhost.com/conference/presentations/shades-of-red-redxor-linux-backdoor-and-its-chinese-origins/ ### Industry reference _No response_ ### Malware reference _No response_ ### Actor reference _No response_ ### Component Linux...
### Area Malware reports ### Parent threat _No response_ ### Finding https://twitter.com/malwrhunterteam/status/1467264298237972484 ### Industry reference Cerber ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No response_...
### Area Malware reports ### Parent threat _No response_ ### Finding https://blogs.blackberry.com/en/2021/12/reverse-engineering-ebpfkit-rootkit-with-blackberrys-free-ida-processor-tool ### Industry reference attack:T1205.002:Socket Filters ebpfkit ### Malware reference _No response_ ### Actor reference _No response_ ### Component...
### Area Malware reports ### Parent threat _No response_ ### Finding https://unit42.paloaltonetworks.com/hildegard-malware-teamtnt/ ### Industry reference Hildegard TeamTNT ### Malware reference _No response_ ### Actor reference _No response_ ### Component _No...