timb-machine / timb-machine/linux-malware
[Intel]: https://www.sandflysecurity.com/blog/linux-stealth-rootkit-malware-with-edr-evasion-analyzed/
Open
Nobody has claimed this yet.
missing:tactics
missing:tag:RedirectionToNull
missing:tag:T1005
missing:tag:T1007
missing:tag:T1021.002
missing:tag:T1027.002
missing:tag:T1048
missing:tag:T1053.006
missing:tag:T1070.004
missing:tag:T1071.001
missing:tag:T1071.004
missing:tag:T1098.004
missing:tag:T1491
missing:tag:T1543.002
missing:tag:T1546.004
missing:tag:T1567
missing:tag:T1573
missing:tag:T1574.006
missing:tag:T1590
new
- Dominant language
- HTML
- Stars
- 1.2k
- Forks
- 95
- PR merge metrics
- No merged PRs in 30d
Description
Area
Malware reports
Parent threat
No response
Finding
https://www.sandflysecurity.com/blog/linux-stealth-rootkit-malware-with-edr-evasion-analyzed/
Industry reference
Cloud Shovel
Malware reference
No response
Actor reference
No response
Component
No response
Scenario
No response
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start with the linked Sandfly Security report and review existing entries in the repository's Malware reports area to understand how findings are recorded. Add this finding with Cloud Shovel as the industry reference, and consider it done when the report is represented consistently with the other entries.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- linux
- Domain
- content, security
- Issue type
- Documentation
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 45/100