Olly42, to linux
@Olly42@nerdculture.de avatar

DinodasRAT Malware targets Linux Servers in Espionage Campaign.

Ubuntu systems being attacked by a Linux version of the DinodasRAT (also known as XDealer) that may have been operating since 2022. DinodasRAT creates a hidden file in the directory where its binary resides, which acts as a mutex to prevent multiple instances from running on the infected device.

https://securelist.com/dinodasrat-linux-implant/112284/

the malware's execution logic
creating the unique ID

governa, to linux
@governa@fosstodon.org avatar

Version of Spotted in Cyber Attacks Across Several Countries

https://thehackernews.com/2024/03/linux-version-of-dinodasrat-spotted-in.html

simontsui, to China

ESET assesses with medium confidence that a cyberespionage campaign targeting a Guyana government entity is linked to a China-aligned threat actor. Initial infection was through spearphishing emails. ESET detailed the use of a new C++ backdoor dubbed DinodasRAT used for C2, with the exfiltrated data encrypted using the Tiny Encryption Algorithm (TEA). The threat actors also deployed Korplug. IOC provided.
Link: https://www.welivesecurity.com/en/eset-research/operation-jacana-spying-guyana-entity/

Tags:

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • thenastyranch
  • rosin
  • GTA5RPClips
  • osvaldo12
  • love
  • Youngstown
  • slotface
  • khanakhh
  • everett
  • kavyap
  • mdbf
  • DreamBathrooms
  • ngwrru68w68
  • provamag3
  • magazineikmin
  • InstantRegret
  • normalnudes
  • tacticalgear
  • cubers
  • ethstaker
  • modclub
  • cisconetworking
  • Durango
  • anitta
  • Leos
  • tester
  • JUstTest
  • All magazines