Yesterday I had a talk about #Linux #malware at #LinuxDays conference in Prague. It covered the history of Linux malware and then we discussed more in depth some specific families, their goals, victims and highlights from the code and features. And the examples of the detection, the host artifacts and network traffic, too. #ebury #mirai #ech0raix #k0ske.

Thanks to @linuxdays for a wonderful and very enjoyable community event.

Credit for the 2nd photo to @rootcz

I wonder how rampant #ebury is now with the new #payload #linux #rootkit
Ebury Botnet Malware Compromises 400,000 Linux Servers Over Past 14 Years

Ebury malware botnet has compromised an estimated 400,000 servers since 2009. Learn how to protect your systems from this advanced threat.

The Hacker News
Thousands of Linux servers infected by Ebury malware

More than 100,000 servers are still compromised by a decades-old infostealer.

Yahoo Tech

15-Year-Old Ebury Botnet Compromised 400,000 Linux Servers

The operators behind the credential stealer and OpenSSH backdoor continue to evolve the malware's propagation tactics and targets. #linux #ebury #botnet https://securityboulevard.com/2024/05/15-year-old-ebury-botnet-compromised-400000-linux-servers

15-Year-Old Ebury Botnet Compromised 400,000 Linux Servers

Bad news: The operators behind the credential stealer and OpenSSH backdoor continue to evolve the malware's propagation tactics and targets.

Security Boulevard
After kernel.org's incident with #Phalanx #Malware(2009-2011),in 2014 a report uncovered that kernel.org had suffered a 2nd infection with #Malware #Ebury, an #OpenSSH backdoor on Linux
persistent coz it gets embedded into modified OpenSSH binaries
Today it is thought that the infections were due to two unconnected #Hacker groups.
Ebury is alive but unseen: 400k Linux servers compromised for cryptocurrency theft and financial gain
#Ebury
https://www.welivesecurity.com/en/eset-research/ebury-alive-unseen-400k-linux-servers-compromised-cryptotheft-financial-gain/
Ebury is alive but unseen: 400k Linux servers compromised for cryptotheft and financial gain

One of the most advanced server-side malware campaigns is still growing, with hundreds of thousands of compromised servers, and it has diversified to include credit card and cryptocurrency theft.

The Bleeding Tree

Check out this great listen on Audible.com. Brought to you by Penguin. It was the last of the ebbing days, the brink of the new season. It was the murky hours, the clove between sunset and sunrise. It was a tall tree with deep roots and it had been bleeding for a long while. As summer falls into a...

Audible.co.uk

You can also follow me over on Twitter for the time being @holliestarling for updates.

And thankyou, as ever, for the inspiration.🌳🍂🌽🎃🏵️🍄🌾
Hollie x

#folkhorror #folkhorrormagpie #thebleedingtree #nonfiction #rider #ebury #penguin #halloween #allhallowseve #spookyseason #autumnvibes #booktwitter

Ebury, la fintech discrète qui veut simplifier les paiements internationaux

La start-up britannique Ebury poursuit son développement en Europe, notamment en France, où elle prévoit une cinquantaine de recrutements en 2019. Spécialisée dans les paiements internationaux, elle a aussi lancé une offre de prêt à court terme, un positionnement que d’autres acteurs de la fintech ont également choisi.