Advent Of Configuration Extraction – Part 4: Turning capa Into A Configuration Extractor For TinyShell variant

In the third part of our series ‘Advent of Configuration Extraction’, we dissect a lightweight Linux backdoor, that is derived from an open-source backdoor called TinySHell. It is designed to provide silent, persistent remote access to compromised servers. The malware consists of a stripped ELF binary that hides most identifying metadata, a networking component that […]

La publication suivante Advent Of Configuration Extraction – Part 4: Turning capa Into A Configuration Extractor For TinyShell variant est un article de Sekoia.io Blog.

This article has been indexed from Sekoia.io Blog

Read the original article: