-
Notifications
You must be signed in to change notification settings - Fork 92
Issues: timb-machine/linux-malware
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
[Intel]: https://www.welivesecurity.com/wp-content/uploads/2021/10/eset_fontonlake.pdf
missing:tactics
missing:tag:Non-persistentStorage
missing:tag:ProcessTreeSpoofing
missing:tag:ProcessTreeSpoofingForking
missing:tag:T1001
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1021.004
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.002
missing:tag:T1083
missing:tag:T1098.004
missing:tag:T1205
missing:tag:T1518
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1552.004
missing:tag:T1574.006
missing:tag:T1574.007
missing:tag:T1590
new
#641
opened Apr 20, 2023 by
timb-machine
[Intel]: https://themittenmac.com/tinyshell-under-the-microscope/
missing:tactics
missing:tag:T1005
missing:tag:T1048
missing:tag:T1055.008
missing:tag:T1057
missing:tag:T1059.006
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1205
missing:tag:T1222
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1548.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1622
new
#617
opened Mar 16, 2023 by
timb-machine
[Intel]: https://github.com/blackberry/threat-research-and-intelligence/raw/main/Talks/2023-01-30%20-%20SANS%20Cyber%20Threat%20Intelligence%20Summit%20%26%20Training%202023/Pedro%20Drimel%2C%20Jose%20Luis%20Sanchez%20Martinez%20-%20Practical%20CTI%20Analysis%20Over%202022%20ITW%20Linux%20Implants.pdf
ignore:submodule
missing:tactics
#613
opened Feb 26, 2023 by
timb-machine
[Intel]: https://securelist.com/top-10-unattributed-apt-mysteries/107676/
missing:tactics
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1205
missing:tag:T1491
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#552
opened Oct 9, 2022 by
timb-machine
[Intel]: https://www.intezer.com/blog/research/acbackdoor-analysis-of-a-new-multiplatform-backdoor/
missing:tactics
missing:tag:Non-persistentStorage
missing:tag:T1001
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1205
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1620
new
#549
opened Oct 8, 2022 by
timb-machine
[Intel]: https://github.com/anelshaer/Remote-Linux-Triage-Collection-using-OSquery
missing:tactics
missing:tag:T1005
missing:tag:T1048
missing:tag:T1053.007
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1548.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1609
missing:tag:T1610
new
#529
opened Sep 30, 2022 by
timb-machine
[Intel]: https://www.sentinelone.com/labs/the-mystery-of-metador-an-unattributed-threat-hiding-in-telcos-isps-and-universities/
missing:tactics
missing:tag:PyPI
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1070.006
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1518
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.007
new
#526
opened Sep 28, 2022 by
timb-machine
[Intel]: https://news.ycombinator.com/item?id=17501379
missing:tactics
missing:tag:T1005
missing:tag:T1007
missing:tag:T1021.002
missing:tag:T1021.004
missing:tag:T1027.002
missing:tag:T1037
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1053.006
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1543.002
missing:tag:T1548.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#525
opened Sep 28, 2022 by
timb-machine
[Intel]: https://github.com/fireeye/SSSDKCMExtractor
deprecated:template
missing:tactics
#520
opened Sep 15, 2022 by
timb-machine
[Intel]: https://www.bitdefender.com/files/News/CaseStudies/study/319/Bitdefender-PR-Whitepaper-DarkNexus-creat4349-en-EN-interactive.pdf
missing:tactics
missing:tag:Non-persistentStorage
missing:tag:T1005
missing:tag:T1027.002
missing:tag:T1037.004
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1222
missing:tag:T1491
missing:tag:T1548.001
missing:tag:T1560
missing:tag:T1562.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#518
opened Sep 14, 2022 by
timb-machine
[Intel]: https://github.com/chriskaliX/Hades
missing:tactics
missing:tag:eBPF
missing:tag:Non-persistentStorage
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1021.004
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1071.001
missing:tag:T1518
missing:tag:T1567
missing:tag:T1573
missing:tag:T1620
new
#514
opened Sep 13, 2022 by
timb-machine
[Intel]: https://hybrid-analysis.com/sample/eb8826bac873442045a6a05f1fa25b410ca18db6942053f6d146467c00d5338d
missing:tactics
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
new
#508
opened Sep 3, 2022 by
timb-machine
[Intel]: https://blog.polyswarm.io/lightning-framework
missing:tactics
missing:tag:T1003.008
missing:tag:T1005
missing:tag:T1007
missing:tag:T1037
missing:tag:T1048
missing:tag:T1053.006
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1098.004
missing:tag:T1491
missing:tag:T1543.002
missing:tag:T1546.004
missing:tag:T1552.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
missing:tag:T1590
new
#506
opened Sep 2, 2022 by
timb-machine
[Intel]: https://blog.avast.com/2013/08/27/linux-trojan-hand-of-thief-ungloved/
missing:tactics
missing:tag:Non-persistentStorage
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1040
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#503
opened Aug 21, 2022 by
timb-machine
[Intel]: https://blog.talosintelligence.com/2022/08/manjusaka-offensive-framework.html
missing:tactics
missing:tag:T1001
missing:tag:T1003.008
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1078.003
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:wltm
#490
opened Aug 8, 2022 by
timb-machine
[Intel]: https://github.com/io-tl/Mara
missing:tactics
missing:tag:Non-persistentStorage
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1021.004
missing:tag:T1027.004
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1546.004
missing:tag:T1548.003
missing:tag:T1567
missing:tag:T1573
new
#487
opened Aug 2, 2022 by
timb-machine
[Intel]: https://github.com/creaktive/tsh
missing:tactics
new
#481
opened Jul 23, 2022 by
timb-machine
Previous Next
ProTip!
Find all open issues with in progress development work with linked:pr.