New VoidLink malware framework targets Linux cloud servers

VoidLink is a recently identified sophisticated cloud-native Linux malware framework that targets cloud systems and gives attackers specialized loaders, implants, rootkits, and plugins made for contemporary infrastructures.

The code of VoidLink, which is written in Zig, Go, and C, indicates that it is a project that is actively being developed, has a lot of documentation, and is probably meant for commercial use.

According to malware analysts at cybersecurity firm Check Point, VoidLink can identify whether it operates in Docker or Kubernetes settings and modify its behavior appropriately.

The lack of proven current infections, however, lends credence to the theory that the virus was designed “either as a product offering or as a framework developed for a customer.”

Based on the interface locale and optimizations, the researchers observe that VoidLink seems to have been created and maintained by Chinese-speaking developers read more about New VoidLink malware framework targets Linux cloud servers.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *