New Linux malware variants target telecom edge devices
Security firm Rapid7 has identified new Linux malware samples actively targeting telecom and network edge equipment, especially in South Korea and Taiwan. Attackers are disguising malware processes to match local vendor software and hiding command signals inside regular internet protocols like DNS, TCP, and email (SMTP). The malware avoids leaving traces on disk after launch, making detection harder. Embedded devices such as CCTV and DVRs are among those at risk.
- Malware adapts to local telecom software conventions
- Six new AVERAT Linux implant builds identified
- BPFDoor variants target South Korean systems
- Malware hides within ordinary DNS, TCP, and SMTP traffic
- Attack focuses on network edge and embedded devices
Sources covering this
More in Cybersecurity
Chinese hackers use Warlock ransomware in SharePoint attacks
A Chinese hacking group has used Warlock ransomware to target organizations serving essential services in Portuguese- and…
Dell issues urgent patches for critical CSM vulnerabilities
Dell has released fixes for two critical vulnerabilities in its Container Storage Modules (CSM), which link enterprise storage arrays to…
Microsoft's X account compromised to promote crypto scam
Unknown attackers took control of Microsoft's official X account, which has over 13 million followers, to promote a fraudulent…
Federal judge rules warrantless Flock search unconstitutional
A federal judge in Oklahoma found that a police officer violated constitutional protections by checking a car's license plate in Flock’s…