Get the latest tech news

Never-before-seen Linux malware gets installed using 1-day exploits | Discovery means that NerbianRAT is cross-platform used by for-profit threat group.


Discovery means that NerbianRAT is cross-platform used by for-profit threat group.

Researchers have unearthed Linux malware that circulated in the wild for at least two years before being identified as a credential stealer that’s installed by the exploitation of recently patched vulnerabilities. Checkpoint went on to conclude that Magnet Goblin—the name the security firm uses to track the financially motivated threat actor using the malware—has installed it by exploiting “1-days,” which are recently patched vulnerabilities. Advertisement “Magnet Goblin, whose campaigns appear to be financially motivated, has been quick to adopt 1-day vulnerabilities to deliver their custom Linux malware, NerbianRAT and MiniNerbian,” Checkpoint researchers wrote.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Linux

Linux

Photo of platform

platform

Photo of discovery

discovery

Related news:

News photo

Linux 6.8 kernel has been released

News photo

Misconfigured Cloud Servers Targeted with Linux Malware for New Cryptojacking Campaign

News photo

Magnet Goblin hackers use 1-day flaws to drop custom Linux malware