timb-machine / linux-malware

Tracking interesting Linux (and UNIX) malware. Send PRs
The Unlicense
1.13k stars 91 forks source link

[Intel]: https://joshua.hu/ssh-snake-ssh-network-traversal-discover-ssh-private-keys-network-graph #800

Open timb-machine opened 9 months ago

timb-machine commented 9 months ago

Area

Offensive techniques

Parent threat

Defense Evasion, Discovery, Lateral Movement

Finding

https://joshua.hu/ssh-snake-ssh-network-traversal-discover-ssh-private-keys-network-graph

Industry reference

attack:T1021.004:SSH attack:T1078:Valid Accounts attack:T1552.004:Private Keys attack:T1027:Obfuscated Files or Information

Malware reference

https://github.com/timb-machine/linux-malware/issues/791 SSH-Snake

Actor reference

No response

Component

Linux, AIX, Solaris, HP-UX

Scenario

Internal enterprise services