Skip to content

[Intel]: https://www.welivesecurity.com/2023/04/20/linux-malware-strengthens-links-lazarus-3cx-supply-chain-attack/ #655

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
timb-machine opened this issue May 7, 2023 · 0 comments

Comments

@timb-machine
Copy link
Owner

Area

Malware reports

Parent threat

Initial Access, Persistence, Privilege Escalation

Finding

https://www.welivesecurity.com/2023/04/20/linux-malware-strengthens-links-lazarus-3cx-supply-chain-attack/

Industry reference

attack:T1566.001:Spearphishing Attachment
attack:T1546.004:Unix Shell Configuration Modification
uses:RedirectionToNull
uses:Go

Malware reference

wltm
OdicLoader
SimplexTea

Actor reference

Lazarus

Component

Linux

Scenario

No response

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment