DIRECTORY

  • Alerts
  • APTs
  • Blog
  • Books
  • Certifications
  • Cheat Sheets
  • Courses
  • Cyber Briefing
  • CyberDecoded
  • CyberReview
  • CyberStory
  • CyberTips
  • Definitions
  • Domains
  • Entertainment
  • FAQ
  • Frameworks
  • Hardware Tools
  • Incidents
  • Malware
  • News
  • Papers
  • Podcasts
  • Quotes
  • Reports
  • Tools
  • Threats
  • Tutorials
No Result
View All Result
  • Login
  • Register
  • Cyber Citizens
  • Cyber Professionals
  • Institutions
CyberMaterial
Get Help
  • Cyber Citizens
  • Cyber Professionals
  • Institutions
CyberMaterial
No Result
View All Result
Get Help
CyberMaterial
Home Alerts

IceFire ransomware expands to Linux

March 10, 2023
Reading Time: 2 mins read
in Alerts

 

IceFire ransomware has been found to be targeting Linux-based systems, having previously only attacked Windows-based systems.

The ransomware has been used to attack media and entertainment organizations worldwide, with most infections being reported in countries such as Turkey, Iran, Pakistan, and the United Arab Emirates.

The ransomware targets user and shared directories that do not require elevated privileges to write or modify.

The malware exploits a deserialization vulnerability in IBM Aspera Faspex file-sharing software to deploy the ransomware. Researchers from SentinelOne have tested the Linux version of the ransomware against Intel-based distributions of Ubuntu and Debian.

The binary is compiled with gcc for the AMD64 architecture and is 2.18 MB in size.

The ransomware encrypts files and appends the “.ifire” extension to the filename before deleting itself by removing the binary. The ransom note contains hardcoded credentials to log into the ransom payment portal hosted on a Tor hidden service.

The Windows version of the ransomware spreads through phishing messages and pivots using post-exploitation toolkits. The Linux variant is still in the early stages, and the experts point out that the IceFire binary was not detected by any of the 61 VirusTotal engines at the time of the report’s publication.

The research highlights the growing threat of ransomware attacks against Linux systems and underscores the need for organizations to take proactive steps to protect their systems.

Experts recommend patching vulnerabilities in software and implementing security measures such as access controls and data backups to mitigate the impact of a ransomware attack.

Read More

Tags: AlertsAlerts 2023IBM AsperaIceFireIranMarch 2023PakistanRansomwareTurkeyUnited Arab EmiratesVulnerabilities
0
VIEWS
ADVERTISEMENT

Related Posts

OpenAI fixes vulnerabilities in ChatGPT

OpenAI fixes vulnerabilities in ChatGPT

March 30, 2023
Vendors Alert 3CX Supply Chain Attack

Vendors Alert 3CX Supply Chain Attack

March 30, 2023
Mozilla Fixes Thunderbird Vulnerability

Mozilla Fixes Thunderbird Vulnerability

March 30, 2023
Chinese state hackers target Linux servers

Chinese state hackers target Linux servers

March 30, 2023

More Articles

Alerts

Several EA Sports FIFA 22 players have been hacked

January 10, 2022
Certification

Certified DevSecOps Professional CDP

March 31, 2022
Alerts

Mitsubishi Electric MELSOFT iQ AppPortal

May 16, 2022
Quotes

“Use cyber crisis simulation tools for…”

October 8, 2022

Security through data

Cybersecurity Domains

  • API Security
  • Business Continuity
  • Career Development
  • Compliance
  • Cryptography
  • HSM
  • KPIs / KRIs
  • Penetration Testing
  • Shift Left
  • Vulnerability Scan

Emerging Technologies

  • 5G
  • Artificial Intelligence
  • Blockchain
  • Cryptocurrency
  • Deepfake
  • E-Commerce
  • Healthcare
  • IoT
  • Quantum Computing

Frameworks

  • CIS Controls
  • CCPA
  • GDPR
  • NIST
  • 23 NYCRR 500
  • HIPAA

Repository

  • Books
  • Certifications
  • Definitions
  • Documents
  • Entertainment
  • Quotes
  • Reports

Threats

  • APTs
  • DDoS
  • Insider Threat
  • Malware
  • Phishing
  • Ransomware
  • Social Engineering

© 2023 | CyberMaterial | All rights reserved.

World’s #1 Cybersecurity Repository

  • About
  • Legal and Privacy Policy
  • Site Map
No Result
View All Result
  • Audience
    • Cyber Citizens
    • Cyber Professionals
    • Institutions
  • Highlights
    • Blog
    • CyberDecoded
    • Cyber Review
    • CyberStory
    • CyberTips
  • Cyber Risks
    • Alerts
    • Attackers
    • Domains
    • Incidents
    • Threats
  • Opportunities
    • Events
    • Jobs
  • Repository
    • Books
    • Certifications
    • Cheat Sheets
    • Courses
    • Definitions
    • Frameworks
    • Games
    • Hardware Tools
    • Memes
    • Movies
    • Papers
    • Podcasts
    • Quotes
    • Reports
  • Report Cyber Incident
  • GET HELP

Subscribe to our newsletter

© 2022 Cybermaterial - Security Through Data .

Welcome Back!

Sign In with Google
Sign In with Linked In
OR

Forgotten Password? Sign Up

Create New Account!

Sign Up with Google
Sign Up with Linked In
OR

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.