-
Notifications
You must be signed in to change notification settings - Fork 91
Issues: timb-machine/linux-malware
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
[Intel]: https://sonarsource.github.io/argument-injection-vectors/
missing:tag:T1005
missing:tag:T1021.004
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1071.001
missing:tag:T1552.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#627
opened Apr 3, 2023 by
timb-machine
[Intel]: https://asec.ahnlab.com/en/49769/
missing:tag:Non-persistentStorage
missing:tag:RedirectionToNull
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
new
#624
opened Mar 29, 2023 by
timb-machine
[Intel]: https://www.linuxexperten.com/library/e-resources/linux-malware-ever-growing-list-2023
missing:tag:JavaScript
missing:tag:T1005
missing:tag:T1007
missing:tag:T1021.002
missing:tag:T1037
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1053.006
missing:tag:T1057
missing:tag:T1070.002
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1071.004
missing:tag:T1083
missing:tag:T1491
missing:tag:T1543.002
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#622
opened Mar 29, 2023 by
timb-machine
[Intel]: https://asec.ahnlab.com/en/50316/
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1037.004
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1222
missing:tag:T1491
missing:tag:T1548.001
missing:tag:T1560
missing:tag:T1562.004
missing:tag:T1567
missing:tag:T1573
#621
opened Mar 28, 2023 by
timb-machine
[Intel]: https://blog.exatrack.com/melofee/
missing:tag:JavaScript
missing:tag:Non-persistentStorage
missing:tag:RedirectionToNull
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1037
missing:tag:T1037.004
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1205
missing:tag:T1215
missing:tag:T1222
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1548.001
missing:tag:T1552.003
missing:tag:T1562.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
#620
opened Mar 28, 2023 by
timb-machine
[Intel]: https://sysdig.com/blog/chaos-malware-persistence-evasion-techniques/
missing:tag:T1005
missing:tag:T1007
missing:tag:T1037.004
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1053.006
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1543.002
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
new
#618
opened Mar 23, 2023 by
timb-machine
[Intel]: https://themittenmac.com/tinyshell-under-the-microscope/
missing:tactics
missing:tag:T1005
missing:tag:T1048
missing:tag:T1055.008
missing:tag:T1057
missing:tag:T1059.006
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1205
missing:tag:T1222
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1548.001
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:T1622
new
#617
opened Mar 16, 2023 by
timb-machine
[Intel]: https://int0x33.medium.com/day-27-tiny-shell-48df6abb0d5d
missing:tag:Non-persistentStorage
missing:tag:RedirectionToNull
missing:tag:T1003.008
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
new
#616
opened Mar 16, 2023 by
timb-machine
[Intel]: https://www.trendmicro.com/en_us/research/23/c/iron-tiger-sysupdate-adds-linux-targeting.html
missing:tag:T1005
missing:tag:T1007
missing:tag:T1037
missing:tag:T1037.004
missing:tag:T1048
missing:tag:T1053.006
missing:tag:T1057
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1071.004
missing:tag:T1083
missing:tag:T1491
missing:tag:T1518
missing:tag:T1543.002
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
missing:tag:wltm
#614
opened Mar 3, 2023 by
timb-machine
[Intel]: https://www.elastic.co/guide/en/security/master/binary-executed-from-shared-memory-directory.html
missing:tag:Non-persistentStorage
missing:tag:T1005
missing:tag:T1048
missing:tag:T1053.007
missing:tag:T1070.003
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1567
missing:tag:T1573
missing:tag:T1609
missing:tag:T1610
#611
opened Feb 20, 2023 by
timb-machine
[Intel]: https://github.com/sqall01/LSMS
missing:tag:Non-persistentStorage
missing:tag:T1003.008
missing:tag:T1005
missing:tag:T1007
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1053.006
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1078.003
missing:tag:T1098.004
missing:tag:T1543.002
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
missing:tag:T1620
#610
opened Jan 22, 2023 by
timb-machine
[Intel]: https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/initial-access-techniques-in-kubernetes-environments-used-by/ba-p/3697975
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1069
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1205
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1552.003
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
missing:tag:T1590
new
#604
opened Jan 21, 2023 by
timb-machine
[Intel]: https://asec.ahnlab.com/en/45182/
missing:tag:T1005
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1070.004
missing:tag:T1070.006
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1560
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#603
opened Jan 21, 2023 by
timb-machine
[Intel]: https://www.stormshield.com/news/orbit-analysis-of-a-linux-dedicated-malware/
missing:tag:Non-persistentStorage
missing:tag:ProcessTreeSpoofing
missing:tag:ProcessTreeSpoofingForking
missing:tag:RedirectionToNull
missing:tag:T1001
missing:tag:T1003.008
missing:tag:T1005
missing:tag:T1021.004
missing:tag:T1027.002
missing:tag:T1040
missing:tag:T1048
missing:tag:T1053.003
missing:tag:T1057
missing:tag:T1059.006
missing:tag:T1070.002
missing:tag:T1070.003
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1078.003
missing:tag:T1083
missing:tag:T1205
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1548.003
missing:tag:T1552.003
missing:tag:T1556.003
missing:tag:T1560
missing:tag:T1562.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
new
#601
opened Jan 21, 2023 by
timb-machine
[Intel]: https://www.fortinet.com/blog/threat-research/gotrim-go-based-botnet-actively-brute-forces-wordpress-websites
missing:tag:T1005
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1083
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1590
new
#598
opened Dec 15, 2022 by
timb-machine
[Intel]: https://packetstormsecurity.com/files/22121/cd00r.c.html
missing:tag:JavaScript
missing:tag:Non-persistentStorage
missing:tag:ProcessTreeSpoofing
missing:tag:ProcessTreeSpoofingForking
missing:tag:T1027.004
missing:tag:T1040
missing:tag:T1048
missing:tag:T1057
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1491
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:wltm
#597
opened Dec 12, 2022 by
timb-machine
ProTip!
Mix and match filters to narrow down what you’re looking for.