Tag: Linux Malware

New SprySOCKS Linux malware used in cyber espionage attacks
News

New SprySOCKS Linux malware used in cyber espionage attacks

A new Linux backdoor known as "SprySOCKS" was utilized by a Chinese hacker with a focus on espionage to target government entities in several different nations. With many of its features adapted to work on Linux systems, Trend Micro's study of the innovative backdoor revealed that it derives from the Trochilus open-source Windows malware. The SprySOCKS command and control server (C2) communication protocol is similar to RedLeaves, a Windows backdoor, hence the virus appears to be a mashup of several infections. The interactive shell's implementation, however, seems to have been inspired by the Linux malware Derusbi read more SprySOCKS Linux malware used in cyber espionage attacks. Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our compr...
Reptile Rootkit Advanced Linux Malware Targeting South Korean Systems
News

Reptile Rootkit Advanced Linux Malware Targeting South Korean Systems

The open-source Reptile rootkit is being used by threat actors to target Linux systems in South Korea. Reptile offers a reverse shell, which enables threat actors to quickly take control of systems, in contrast to other rootkit malware that normally just provides hiding capabilities, according to a research released this week by the AhnLab Security Emergency Response Centre (ASEC). "Port knocking is a technique when malware on an infected system opens a certain port and then goes on standby. The magic packet that the threat actor transmits to the system is then utilized as the foundation for a connection to the C&C server read more Reptile Rootkit Advanced Linux Malware Targeting South Korean Systems. Stay informed with the best cybersecurity news and raise your cybersecurity...