Business CircleBusiness Circle
  • Home
  • AI News
  • Startups
  • Markets
  • Finances
  • Technology
  • More
    • Human Resource
    • Marketing & Sales
    • SMEs
    • Lifestyle
    • Trading & Stock Market
What's Hot

The best microSD Express cards for the Switch 2

March 7, 2026

Imperial Petroleum (IMPP) Q4 Earnings Surge 250% YoY to $0.35 EPS on Strong Tanker Utilization

March 7, 2026

PB Fintech: Goldman Sachs, Tata Mutual Fund buy stake in Rs 695 crore block deal

March 7, 2026
Facebook Twitter Instagram
Saturday, March 7
  • Advertise with us
  • Submit Articles
  • About us
  • Contact us
Business CircleBusiness Circle
  • Home
  • AI News
  • Startups
  • Markets
  • Finances
  • Technology
  • More
    • Human Resource
    • Marketing & Sales
    • SMEs
    • Lifestyle
    • Trading & Stock Market
Subscribe
Business CircleBusiness Circle
Home » A nasty new malware strain is stealing data from Linux devices
Technology

A nasty new malware strain is stealing data from Linux devices

Business Circle TeamBy Business Circle TeamJuly 8, 2022Updated:August 21, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
A nasty new malware strain is stealing data from Linux devices
Share
Facebook Twitter LinkedIn Pinterest Email



A brand new Linux (opens in new tab) malware has been found that’s able to avoiding detection by antivirus packages, steals delicate knowledge from compromised endpoints (opens in new tab) and infects all processes working on a tool.

Cybersecurity researchers from Intezer Labs say the malware (opens in new tab), dubbed OrBit, modifies the LD_PRELOAD surroundings variable, permitting it to hijack shared libraries and, consequently, intercept perform calls. 

“The malware implements superior evasion strategies and beneficial properties persistence on the machine by hooking key features, gives the menace actors with distant entry capabilities over SSH, harvests credentials, and logs TTY instructions,” Intezer Labs researcher Nicole Fishbein defined.

Hiding in plain sight

“As soon as the malware is put in it can infect all the working processes, together with new processes, which are working on the machine.”

Up till solely just lately, most antivirus options didn’t deal with OrBit dropper, or payload, as malicious, the researchers mentioned however added that now, some anti-malware service suppliers do determine OrBit as malicious. 

“This malware steals info from completely different instructions and utilities and shops them in particular recordsdata on the machine. In addition to, there may be an intensive utilization of recordsdata for storing knowledge, one thing that was not seen earlier than,” Fishbein concluded.

“What makes this malware particularly fascinating is the just about airtight hooking of libraries on the sufferer machine, that permits the malware to realize persistence and evade detection whereas stealing info and setting SSH backdoor.”

Risk actors have been fairly lively on the Linux platform these days, BleepingComputer has discovered. In addition to OrBit, the just lately found Symbiote malware additionally makes use of the LD_PRELOAD directive to load itself into working processes. It acts as a system-wide parasite, the publication claims, including that it leaves no signal of an infection.

BPFDoor is an identical malware pressure, as properly. It targets Linux techniques and hides by utilizing the names of widespread Linux daemons. This helped it keep below antivirus radars for 5 years. 

In addition to these two, there may be additionally Syslogk, able to each loading, and hiding, malicious packages. As revealed by cybersecurity researchers from Avast, the rootkit malware is predicated on an previous, open-sourced rootkit referred to as Adore-Ng. It’s additionally in a comparatively early stage of (lively) growth, so whether or not or not it evolves right into a full-blown menace, stays to be seen.

By way of: BleepingComputer (opens in new tab)



Source link

Data Devices Linux malware nasty stealing strain
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Business Circle Team
Business Circle Team
  • Website

Related Posts

The best microSD Express cards for the Switch 2

March 7, 2026

Rad Power Bikes gets a new owner, pledge to build bikes in the US

March 6, 2026

Anthropic to challenge DOD’s supply-chain label in court

March 6, 2026

An interview with Tim Sweeney on the Google/Epic settlement, what Play Store changes mean for developers, why Epic’s case against Apple is different, and more (Dean Takahashi/GamesBeat)

March 6, 2026
LATEST UPDATES

The best microSD Express cards for the Switch 2

March 7, 2026

Imperial Petroleum (IMPP) Q4 Earnings Surge 250% YoY to $0.35 EPS on Strong Tanker Utilization

March 7, 2026

PB Fintech: Goldman Sachs, Tata Mutual Fund buy stake in Rs 695 crore block deal

March 7, 2026

As RTO surges, childcare benefits demand rises

March 7, 2026

Subscriber Search Is Now Up To 12x Faster

March 7, 2026

15 Legal Mistakes First-Time Founders Should Avoid

March 7, 2026

Subscribe to Updates

Get the latest sports news from SportsSite about soccer, football and tennis.

Business, Finance and Market Growth News Site

Important Pages
  • Advertise with us
  • Submit Articles
  • About us
  • Contact us
Recent Posts
  • The best microSD Express cards for the Switch 2
  • Imperial Petroleum (IMPP) Q4 Earnings Surge 250% YoY to $0.35 EPS on Strong Tanker Utilization
  • PB Fintech: Goldman Sachs, Tata Mutual Fund buy stake in Rs 695 crore block deal
© 2026 BusinessCircle.co
  • Privacy Policy
  • Terms and Conditions
  • Cookie Privacy Policy
  • Disclaimer
  • DMCA

Type above and press Enter to search. Press Esc to cancel.