ASEC has identified a new DDoS malware strain, cShell, which targets poorly managed Linux SSH servers. The malware gains access by exploiting weak SSH credentials and runs DDoS attacks using Linux tools. Attackers use brute force techniques to access publicly exposed SSH services and install tools such as cARM. cShell relies on existing Linux utilities, screen and hping3, to execute attacks. Poorly secured Linux systems are seen as prime targets for botnet construction used in DDoS campaigns.

Microsoft Warns of WhatsApp Attachments Spreading Backdoor on Windows PCs – Hackread
Microsoft Warns of WhatsApp Attachments Spreading Backdoor on Windows PCs Hackread


