-
Notifications
You must be signed in to change notification settings - Fork 92
Issues: timb-machine/linux-malware
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
[Intel]: https://blog.sonatype.com/pypi-package-secretslib-drops-fileless-linux-malware-to-mine-monero
missing:tag:Non-persistentStorage
missing:tag:RedirectionToNull
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1222
missing:tag:T1491
missing:tag:T1518
missing:tag:T1546.004
missing:tag:T1548.001
missing:tag:T1548.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1620
new
#495
opened Aug 12, 2022 by
timb-machine
[Intel]: https://blog.reversinglabs.com/blog/gwisinlocker-ransomware-targets-south-korean-industrial-and-pharmaceutical-companies
missing:tag:Non-persistentStorage
missing:tag:NPM
missing:tag:RedirectionToNull
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1053.007
missing:tag:T1057
missing:tag:T1070.002
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1609
missing:tag:T1610
new
#496
opened Aug 12, 2022 by
timb-machine
[Intel]: https://github.com/wunderwuzzi23/Offensive-BPF
missing:tag:eBPF
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1548.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#469
opened Jul 11, 2022 by
timb-machine
[Intel]: https://www.trendmicro.com/en_us/research/22/h/irontiger-compromises-chat-app-Mimi-targets-windows-mac-linux-users.html
deprecated:template
missing:tag:JavaScript
missing:tag:Non-persistentStorage
missing:tag:T1005
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1518
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
new
#501
opened Aug 17, 2022 by
timb-machine
[Intel]: https://blog.polyswarm.io/deadbolt-ransomware
missing:tag:T1003.008
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1048
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#577
opened Oct 28, 2022 by
timb-machine
[Intel]: https://www.form3.tech/engineering/content/bypassing-ebpf-tools
missing:tag:ProcessTreeSpoofing
missing:tag:T1005
missing:tag:T1048
missing:tag:T1053.007
missing:tag:T1055.012
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1609
missing:tag:T1610
new
#584
opened Nov 10, 2022 by
timb-machine
[Intel]: https://www.uptycs.com/blog/another-ransomware-for-linux-likely-in-development
missing:tag:ProcessTreeSpoofingThreads
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
new
#505
opened Sep 2, 2022 by
timb-machine
[Intel]: https://www.welivesecurity.com/2013/05/07/linuxcdorked-malware-lighttpd-and-nginx-web-servers-also-affected/
missing:tag:JavaScript
missing:tag:T1001
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1558
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#513
opened Sep 7, 2022 by
timb-machine
[Intel]: https://cybersecurity.att.com/blogs/labs-research/shikitega-new-stealthy-malware-targeting-linux
missing:tag:T1005
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
#510
opened Sep 6, 2022 by
timb-machine
[Intel]: https://lab52.io/blog/looking-for-penquins-in-the-wild/
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
new
#594
opened Dec 3, 2022 by
timb-machine
[Intel]: https://securelist.com/the-penquin-turla-2/67962/
missing:tag:T1027.002
missing:tag:T1040
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1205
missing:tag:T1215
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#593
opened Dec 3, 2022 by
timb-machine
[Intel]: https://www.fortinet.com/blog/threat-research/gotrim-go-based-botnet-actively-brute-forces-wordpress-websites
missing:tag:T1005
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#598
opened Dec 15, 2022 by
timb-machine
[Intel]: https://packetstormsecurity.com/files/22121/cd00r.c.html
missing:tag:JavaScript
missing:tag:Non-persistentStorage
missing:tag:ProcessTreeSpoofing
missing:tag:ProcessTreeSpoofingForking
missing:tag:T1027.004
missing:tag:T1040
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:wltm
#597
opened Dec 12, 2022 by
timb-machine
[Intel]: https://archive.org/details/HalLinuxForensics
missing:tag:JavaScript
missing:tag:T1021.001
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1046
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
#560
opened Oct 9, 2022 by
timb-machine
[Intel]: https://packetstormsecurity.com/files/author/3859/
deprecated:template
missing:tag:JavaScript
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
#553
opened Oct 9, 2022 by
timb-machine
[Intel]: https://mp-weixin-qq-com.translate.goog/s/pd6fUs5TLdBtwUHauclDOQ?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=en&_x_tr_pto=wapp
missing:tag:Non-persistentStorage
missing:tag:RedirectionToNull
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1059.006
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1205
missing:tag:T1491
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
new
#588
opened Nov 19, 2022 by
timb-machine
[Intel]: https://www.darkreading.com/attacks-breaches/blackcat-purveyor-shows-ransomware-operators-have-nine-lives
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1518
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#41
opened Apr 19, 2022 by
timb-machine
[Intel]: https://darrenmartyn.ie/2021/11/29/analysis-of-the-lib__mdma-so-1-userland-rootkit/
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1548.003
missing:tag:T1552.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
missing:tag:T1590
new
#401
opened Apr 20, 2022 by
timb-machine
Previous Next
ProTip!
Find all open issues with in progress development work with linked:pr.