nerdculture.de is one of the many independent Mastodon servers you can use to participate in the fediverse.
Be excellent to each other, live humanism, no nazis, no hate speech. Not only for nerds, but the domain is somewhat cool. ;) No bots in general. Languages: DE, EN, FR, NL, ES, IT

Administered by:

Server stats:

1.2K
active users

Olly 👾

New stealthy Pumakit Linux Rootkit Malware spotted in the Wild. :linux:

IT-security researchers have uncovered a new Linux rootkit called PUMAKIT that comes with capabilities to escalate privileges, hide files & directories, and conceal itself from system tools, while simultaneously evading detection.

elastic.co/security-labs/decla

@Olly42

So what? That does sound like a tool for three-letter-agencies. No mention of the attack vector. How does this beast get into the system in the first place? How does the system get infected? Evil Maid? Manipulation while "checking" the device?

@PC_Fluesterer

The company's analysis comes from artifacts uploaded to the VirusTotal malware scanning platform earlier this September.

<virustotal.com/gui/file/30b267>
<virustotal.com/gui/file/71cc6a>

Besides file hashes, Elastic Security has published a YARA rule to help Linux system administrators detect Pumakit attacks.

www.virustotal.comVirusTotalVirusTotal

@Olly42
Still AFTER the infection.
How does that happen?