Drovorub Malware What It Is How It Works And How To Prevent It Malware Spotlight
According to the FBI and NSA analysis, the malware seems to be associated with the APT28 (Fancy Bear, Sednit), a nickname given to the hackers operating out of the military unity 26165 of the Russian General Staff Main Intelligence Directorate (GRU) 85th Main SpecialService Center (GTsSS). This malware has been used to implant backdoors inside compromised networks for persistence, exfiltration and later access. Drovorub: How it works Drovorub is a Linux malware kit that takes advantage of the Linux kernel to infect victims....