"Rapid Deployment of Custom Linux Malware via 1-Day Exploits by Magnet Goblin Hacker Group"

TL;DR Summary
A financially motivated threat actor known as Magnet Goblin is exploiting known vulnerabilities to target public-facing services and deliver custom malware to unpatched Windows and Linux systems, including recently discovered Ivanti Connect Secure VPN flaws. The group deploys custom Windows and Linux malware, such as NerbianRAT and MiniNerbian, and leverages legitimate remote monitoring and management tools. Researchers have observed the group's quick adoption of 1-day vulnerabilities to deliver their custom Linux malware, targeting areas that have been left unprotected.
Topics:technology#1-day-vulnerabilities#custom-malware#cybersecurity#ivanti-connect-secure-vpn#linux-malware#threat-actor
- Hackers leverage 1-day vulnerabilities to deliver custom Linux malware Help Net Security
- 'Magnet Goblin' Exploits Ivanti 1-Day Bug in Mere Hours Dark Reading
- Never-before-seen Linux malware gets installed using 1-day exploits Ars Technica
- Magnet Goblin Targets Publicly Facing Servers Using 1-Day Vulnerabilities Check Point Research
- Magnet Goblin Hacker Group Leveraging 1-Day Exploits to Deploy Nerbian RAT The Hacker News
Reading Insights
Total Reads
0
Unique Readers
0
Time Saved
1 min
vs 2 min read
Condensed
74%
304 → 79 words
Want the full story? Read the original article
Read on Help Net Security