Chinese APT Gelsemium Unleashes WolfsBane Malware on Linux Systems

1 min read
Source: We Live Security
Chinese APT Gelsemium Unleashes WolfsBane Malware on Linux Systems
Photo: We Live Security
TL;DR Summary

ESET researchers have discovered a new Linux backdoor named WolfsBane, attributed to the Gelsemium APT group, marking the first known use of Linux malware by this China-aligned threat actor. WolfsBane is the Linux counterpart to the Windows-based Gelsevirine backdoor, used for cyberespionage. Another backdoor, FireWood, was also found but is only tentatively linked to Gelsemium. This shift towards Linux malware by APT groups is attributed to enhanced security measures on Windows systems, prompting attackers to target vulnerabilities in Linux-based internet-facing systems.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

18 min

vs 19 min read

Condensed

98%

3,66781 words

Want the full story? Read the original article

Read on We Live Security