Skip to content

[Intel]: https://haxrob.net/fastcash-for-linux/ #815

@timb-machine

Description

@timb-machine

Area

Malware reports

Parent threat

Persistence, Privilege Escalation, Defense Evasion, Impact

Finding

https://haxrob.net/fastcash-for-linux/

Industry reference

attack:T1565.002:Transmitted Data Manipulation
attack:T1055:Process Injection
attack:T1055.009:Proc Memory
attack:T1564.001:Hidden Files and Directories
attack:T1574:Hijack Execution Flow
attack:T1567:Financial Theft
attack:T1027.002:Software Packing
uses:Non-persistentStorage
attack:T1027.013:Encrypted/Encoded File

Malware reference

FastCash
#407
#312
#135
wltm

Actor reference

No response

Component

Linux, Banking

Scenario

Internal specialist services

Metadata

Metadata

Assignees

Labels

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions