Eblogtip.com
  • Categories
    • News
    • Technology
    • Domains
    • Hosting
    • Promotions

Archives

  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • December 2022

Categories

  • News
  • Technology
  • Uncategorized
eBlogTip
  • Categories
    • News
    • Technology
    • Domains
    • Hosting
    • Promotions
  • News

This free download manager site actually just redirected Linux users to malware for years

  • September 13, 2023
Total
0
Shares
0
0
0


An infostealing malware campaign has been underway for at least three years, going completely unnoticed, Russian cybersecurity firm Kaspersky has revealed.

The finding came after the company decided to take a closer look at the growing number of Linux-based attacks, which “can operate for years without being noticed by the cybersecurity community.”

This example in particular focuses on what appears to be a free download manager destined for use on Debian machines, which has been available in its malicious form since January 2020.

Debian download manager malware

Affected versions of the downloadable software contain an infected postinst script that is executed upon installation, which the analysts say contains comments in both Russian and Ukrainian.

Having downloaded and installed an infected version of the software for further investigation, Kaspersky’s workers reveal that a Bash stealer is deployed to collect information such as system information, browsing history, saved passwords, cryptocurrency wallet files, and credentials for cloud services – specifically, AWS, Google Cloud, Oracle Cloud Infrastructure, Azure.

Fortunately, the researchers also revealed how the malicious version of the software had been distributed. They confirmed that the official website and its content had not been compromised, and actually, the infostealing version had been posted to online communities like Reddit and StackOverflow over a period of around two years.

The genuine makers of Free Download Manager have since been notified by Kaspersky, though at the time of writing, they had not responded.

According to Kaspersky, the threat actor targeted Linux machines specifically because they are much less frequently analyzed compared with Windows and macOS devices, simply due to popularity reasons. 

Still, there are some very easy steps that users can take to protect themselves online. Most importantly, users should only download from legitimate sources and check things like domains and email addresses against what has been verified as legitimate. Doing so would have saved victims from this case of malware.

More from TechRadar Pro


Source link

Total
0
Shares
Share 0
Tweet 0
Pin it 0
Previous Article
  • Technology

Ask Sophie: Can I get an O-1A visa to bypass the H-1B process?

  • September 13, 2023
View Post
Next Article
  • News

Stability AI’s new text-to-audio tool is like a Midjourney for music samples

  • September 13, 2023
View Post
You May Also Like
View Post
  • News

Top VPN providers get recognized as secure and ethical products

  • September 28, 2023
View Post
  • News

Meta AI is coming to your social media apps – and I’ve already forgotten about ChatGPT

  • September 28, 2023
View Post
  • News

Fortnite developer Epic Games is laying off over 800 employees

  • September 28, 2023
View Post
  • News

Reddit will now force targeted ads on everyone as the site becomes increasingly monetized

  • September 28, 2023
View Post
  • News

Cyberpunk 2077 devs have no plans for any further “big updates”, focus will turn to sequel instead

  • September 28, 2023
View Post
  • News

Fitbit Charge 6 has arrived, and it’s (almost) like a longer-lasting Pixel Watch

  • September 28, 2023
View Post
  • News

Quebec Lures $5 Billion Battery Factory for Electric Cars

  • September 28, 2023
View Post
  • News

Larian reveals the top 20 Baldur’s Gate 3 multiclass builds with the Rogue Ranger mix being the most popular

  • September 28, 2023

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

eBlogTip.com
  • Categories

Input your search keywords and press Enter.