timb-machine / linux-malware

Tracking interesting Linux (and UNIX) malware. Send PRs
The Unlicense
1.11k stars 90 forks source link

[Intel]: https://asec.ahnlab.com/en/55229/ #722

Open timb-machine opened 1 year ago

timb-machine commented 1 year ago

Area

Malware reports

Parent threat

Defense Evasion, Command and Control

Finding

https://asec.ahnlab.com/en/55229/

Industry reference

https://github.com/timb-machine/linux-malware/issues/709 attack:T1036.005:Match Legitimate Name or Location attack:T1573.001:Symmetric Encryption uses:ProcessTreeSpoofing

Malware reference

Rekoobe TINYSHELL

Actor reference

APT31

Component

Linux, Solaris

Scenario

No response