timb-machine / linux-malware

Tracking interesting Linux (and UNIX) malware. Send PRs
The Unlicense
1.11k stars 90 forks source link

[Intel]: https://asec.ahnlab.com/ko/55070/ #709

Open timb-machine opened 1 year ago

timb-machine commented 1 year ago

Area

Malware reports

Parent threat

Command and Control, Defense Evasion

Finding

https://asec.ahnlab.com/ko/55070/

Industry reference

https://github.com/timb-machine/linux-malware/issues/722 attack:T1036.005:Match Legitimate Name or Location attack:T1573.001:Symmetric Encryption uses:ProcessTreeSpoofing

Malware reference

Rekoobe TINYSHELL

Actor reference

APT31

Component

Linux, Solaris

Scenario

No response