-
Notifications
You must be signed in to change notification settings - Fork 94
Open
Labels
missing:tacticsmissing:tag:IRCmissing:tag:Non-persistentStoragemissing:tag:ProcessTreeSpoofingmissing:tag:RedirectionToNullmissing:tag:T1001missing:tag:T1005missing:tag:T1021.002missing:tag:T1021.004missing:tag:T1027.002missing:tag:T1040missing:tag:T1048missing:tag:T1053.003missing:tag:T1057missing:tag:T1070.002missing:tag:T1070.003missing:tag:T1070.004missing:tag:T1071.001missing:tag:T1083missing:tag:T1098.004missing:tag:T1491missing:tag:T1518missing:tag:T1552.003missing:tag:T1552.004missing:tag:T1556.003missing:tag:T1560missing:tag:T1567missing:tag:T1573missing:tag:T1574.006missing:tag:T1590missing:tag:wltmnewtriageAutomated analysis performedAutomated analysis performed
Description
Area
Press/academia
Parent threat
Persistence
Finding
https://www.welivesecurity.com/wp-content/uploads/2018/12/ESET-The_Dark_Side_of_the_ForSSHe.pdf
Industry reference
various SSH
Bonadan
Kessel
Chandrila
uses:Perl
Malware reference
No response
Actor reference
No response
Component
No response
Scenario
No response
Metadata
Metadata
Assignees
Labels
missing:tacticsmissing:tag:IRCmissing:tag:Non-persistentStoragemissing:tag:ProcessTreeSpoofingmissing:tag:RedirectionToNullmissing:tag:T1001missing:tag:T1005missing:tag:T1021.002missing:tag:T1021.004missing:tag:T1027.002missing:tag:T1040missing:tag:T1048missing:tag:T1053.003missing:tag:T1057missing:tag:T1070.002missing:tag:T1070.003missing:tag:T1070.004missing:tag:T1071.001missing:tag:T1083missing:tag:T1098.004missing:tag:T1491missing:tag:T1518missing:tag:T1552.003missing:tag:T1552.004missing:tag:T1556.003missing:tag:T1560missing:tag:T1567missing:tag:T1573missing:tag:T1574.006missing:tag:T1590missing:tag:wltmnewtriageAutomated analysis performedAutomated analysis performed