NekuSoul-Lemmy
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
lemme in@lemm.ee to Linux@programming.dev · 6 months ago

Chinese hackers exploit Linux with new WolfsBane malware

www.neowin.net

external-link
message-square
9
fedilink
57
external-link

Chinese hackers exploit Linux with new WolfsBane malware

www.neowin.net

lemme in@lemm.ee to Linux@programming.dev · 6 months ago
message-square
9
fedilink
ESET researchers uncover "WolfsBane," a Linux backdoor linked to the China-based Gelsemium group. This is Gelsemium's first known Linux malware—hinting at a change in attack strategies.
alert-triangle
You must log in or register to comment.
  • TheFool@infosec.pub
    link
    fedilink
    arrow-up
    32
    ·
    6 months ago

    Researchers believe the shift to Linux malware is due to improvements in Windows endpoint security. As a result, threat actors are exploring new attack avenues, increasingly focusing on exploiting flaws in internet-facing systems, most of which run on Linux.

    I don‘t get the reasoning here… these servers ran Linux before so what has that to do with Windows endpoints?

    • BonerMan@ani.social
      link
      fedilink
      arrow-up
      25
      ·
      6 months ago

      Its called clickbait BS.

      These Servers are secured by so much and don’t even run out of the box anything, they run entirely custom operating systems based on Linux wich are behind massive Firewalls.

    • Shareni@programming.dev
      link
      fedilink
      arrow-up
      3
      ·
      6 months ago

      Idk about the endpoints, but this seems to be targeting desktops and not servers, as those don’t have KDE.

    • PoolloverNathan@programming.dev
      link
      fedilink
      arrow-up
      11
      arrow-down
      13
      ·
      6 months ago

      Windows is harder, so less valuable to spend time on.

      • braindefragger@lemmy.world
        link
        fedilink
        arrow-up
        24
        arrow-down
        1
        ·
        edit-2
        3 months ago

        Dnnxnd

        • GetOffMyLan@programming.dev
          link
          fedilink
          arrow-up
          4
          arrow-down
          10
          ·
          6 months ago

          That is what the article says. Windows is definitely becoming a harder target and Linux is becoming way more common.

          Linux’s customisability and use of a huge range of different softwares means there’s likely to be many more attack vectors.

  • thingsiplay@beehaw.org
    link
    fedilink
    arrow-up
    7
    ·
    6 months ago

    Next week in news: After Russia, Chinese next to get banned from Linux.

    • Possibly linux@lemmy.zip
      link
      fedilink
      English
      arrow-up
      2
      ·
      6 months ago

      I see that as a possibility but not because they are writing malware

      Also China is a much bigger country compared to Russia so there would be a big loss.

  • Possibly linux@lemmy.zip
    link
    fedilink
    English
    arrow-up
    7
    ·
    6 months ago

    Better version

    https://www.welivesecurity.com/en/eset-research/unveiling-wolfsbane-gelsemiums-linux-counterpart-to-gelsevirine/

Linux@programming.dev

linux@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !linux@programming.dev

A community for everything relating to the GNU/Linux operating system

Also check out:

  • !linux_memes@programming.dev
  • !linuxphones@lemmy.ca

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 396 users / day
  • 1.52K users / week
  • 3.5K users / month
  • 8.22K users / 6 months
  • 1 local subscriber
  • 7.26K subscribers
  • 1.5K Posts
  • 11.8K Comments
  • Modlog
  • mods:
  • Ategon@programming.dev
  • adr1an@programming.dev
  • dwraf_of_ignorance@programming.dev
  • BE: 0.19.8
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org