Open timb-machine opened 10 months ago
Malware reports
Defense Evasion, Discovery, Command and Control
https://www.trendmicro.com/en_us/research/23/i/earth-lusca-employs-new-linux-backdoor.html
attack:T1090:Proxy uses:ProcessTreeSpoofing attack:T1027:Obfuscated Files or Information attack:T1082:System Information Discovery
SprySOCKS Mandibule https://github.com/timb-machine/linux-malware/issues/170
Earth Lusca
Linux
No response
Area
Malware reports
Parent threat
Defense Evasion, Discovery, Command and Control
Finding
https://www.trendmicro.com/en_us/research/23/i/earth-lusca-employs-new-linux-backdoor.html
Industry reference
attack:T1090:Proxy uses:ProcessTreeSpoofing attack:T1027:Obfuscated Files or Information attack:T1082:System Information Discovery
Malware reference
SprySOCKS Mandibule https://github.com/timb-machine/linux-malware/issues/170
Actor reference
Earth Lusca
Component
Linux
Scenario
No response