Cookie Consent by Free Privacy Policy Generator ๐Ÿ“Œ A New Botnet Is Covertly Targeting Millions of Servers

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š A New Botnet Is Covertly Targeting Millions of Servers


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: it.slashdot.org

An anonymous reader quotes a report from Wired: FritzFrog has been used to try and infiltrate government agencies, banks, telecom companies, and universities across the US and Europe. Researchers have found what they believe is a previously undiscovered botnet that uses unusually advanced measures to covertly target millions of servers around the world. The botnet uses proprietary software written from scratch to infect servers and corral them into a peer-to-peer network, researchers from security firm Guardicore Labs reported on Wednesday. Peer-to-peer (P2P) botnets distribute their administration among many infected nodes rather than relying on a control server to send commands and receive pilfered data. With no centralized server, the botnets are generally harder to spot and more difficult to shut down. The botnet, which Guardicore Labs researchers have named FritzFrog, has a host of other advanced features, including: In-memory payloads that never touch the disks of infected servers; At least 20 versions of the software binary since January; A sole focus on infecting secure shell, or SSH, servers that network administrators use to manage machines; The ability to backdoor infected servers; and A list of login credential combinations used to suss out weak login passwords that's more "extensive" than those in previously seen botnets. Taken together, the attributes indicate an above-average operator who has invested considerable resources to build a botnet that's effective, difficult to detect, and resilient to takedowns. The new code base -- combined with rapidly evolving versions and payloads that run only in memory -- make it hard for antivirus and other end-point protection to detect the malware. The botnet has so far succeeded in infecting 500 servers belonging to "well-known universities in the US and Europe, and a railway company."Once installed, the malicious payload can execute 30 commands, including those that run scripts and download databases, logs, or files. To evade firewalls and endpoint protection, attackers pipe commands over SSH to a netcat client on the infected machine. Netcat then connects to a "malware server." (Mention of this server suggests that the FritzFrog peer-to-peer structure may not be absolute. Or it's possible that the "malware server" is hosted on one of the infected machines, and not on a dedicated server. Guardicore Labs researchers weren't immediately available to clarify.)

Read more of this story at Slashdot.

...



๐Ÿ“Œ Experts On A New Botnet Is Covertly Targeting Millions Of Servers


๐Ÿ“ˆ 62.21 Punkte

๐Ÿ“Œ A New Botnet Is Covertly Targeting Millions of Servers


๐Ÿ“ˆ 62.21 Punkte

๐Ÿ“Œ A New Linux-based Botnet Targeting Vulnerabilities in Web Servers & Android Servers


๐Ÿ“ˆ 38.37 Punkte

๐Ÿ“Œ An unsophisticated but effective botnet is targeting exposed cloud servers and racking up millions of infections.


๐Ÿ“ˆ 36.38 Punkte

๐Ÿ“Œ Experts Insight On FritzFrog botnet targeting millions of servers, including government agencies and banks


๐Ÿ“ˆ 36.38 Punkte

๐Ÿ“Œ New Brute-Force Botnet Targeting Over 1.5 Million RDP Servers Worldwide


๐Ÿ“ˆ 29.98 Punkte

๐Ÿ“Œ New Roboto botnet emerges targeting Linux servers running Webmin


๐Ÿ“ˆ 29.98 Punkte

๐Ÿ“Œ A New Fileless P2P Botnet Malware Targeting SSH Servers Worldwide


๐Ÿ“ˆ 29.98 Punkte

๐Ÿ“Œ Panchan: A New Golang-based Peer-To-Peer Botnet Targeting Linux Servers


๐Ÿ“ˆ 29.98 Punkte

๐Ÿ“Œ New Botnet Targeting Minecraft Servers Poses Potential Enterprise Threat


๐Ÿ“ˆ 29.98 Punkte

๐Ÿ“Œ Threat is targeting millions of globeโ€™s email servers


๐Ÿ“ˆ 27.08 Punkte

๐Ÿ“Œ Stantinko Botnet Now Targeting Linux Servers to Hide Behind Proxies


๐Ÿ“ˆ 27.06 Punkte

๐Ÿ“Œ Stantinko Botnet Now Targeting Linux Servers to Hide Behind Proxies


๐Ÿ“ˆ 27.06 Punkte

๐Ÿ“Œ NoaBot: Latest Mirai-Based Botnet Targeting SSH Servers for Crypto Mining


๐Ÿ“ˆ 27.06 Punkte

๐Ÿ“Œ Lemon Duck botnet is targeting vulnerable Exchange servers


๐Ÿ“ˆ 27.06 Punkte

๐Ÿ“Œ Panchan Golang P2P botnet targeting Linux servers in cryptomining campaign


๐Ÿ“ˆ 27.06 Punkte

๐Ÿ“Œ FritzFrog Botnet Attacks Millions of SSH Servers


๐Ÿ“ˆ 27.03 Punkte

๐Ÿ“Œ New Air-Gap Jumper Covertly Transmits Data in Hard-Drive Sounds


๐Ÿ“ˆ 25.82 Punkte

๐Ÿ“Œ TrickBot's new Linux malware covertly infects Windows devices


๐Ÿ“ˆ 25.82 Punkte

๐Ÿ“Œ New HiatusRAT Malware Targets Business-Grade Routers to Covertly Spy on Victims


๐Ÿ“ˆ 25.82 Punkte

๐Ÿ“Œ New Air-Gap Jumper Covertly Transmits Data in Hard-Drive Sounds


๐Ÿ“ˆ 25.82 Punkte

๐Ÿ“Œ New XLoader Botnet version uses new techniques to obscure its C2 servers


๐Ÿ“ˆ 23.54 Punkte

๐Ÿ“Œ ProjectSauron: top level cyber-espionage platform covertly extracts encrypted government comms


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ ProjectSauron: top level cyber-espionage platform covertly extracts encrypted government comms


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ Brutal Kangaroo: CIA-developed Malware for Hacking Air-Gapped Networks Covertly


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ How CIA Agents Covertly Steal Data From Hacked Smartphones (Without Internet)


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ Stantinko: A massive adware campaign operating covertly since 2012


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ YouTube fined $170m for covertly tracking kids online


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ LCD pwn System: How to modulate screen brightness to covertly transmit data from an air-gapped computer... slowly


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ Researchers transmit data covertly by altering screen brightness


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ Facebook Covertly Launches A Photo-Sharing App In China


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ WhatsApp Security Flaws Could Be Exploited To Covertly Add Members To Group Chats


๐Ÿ“ˆ 22.9 Punkte

๐Ÿ“Œ APT Hackers Infect Routers to Covertly Implant Slingshot Spying Malware


๐Ÿ“ˆ 22.9 Punkte











matomo