Quasar Linux malware targets software developers with rootkit and credential-stealing features

bleepingcomputer.com

A new stealthy Linux malware, Quasar Linux, is targeting software developers. The implant, found in development environments like npm and GitHub, uses rootkit, backdoor, and credential-stealing capabilities. It dynamically compiles components on target systems for stealth and persistence. Researchers discovered Quasar Linux employs multiple persistence mechanisms and advanced stealth techniques, including kernel-level concealment. Trend Micro has provided indicators of compromise for detection.


With a significance score of 3.7, this news ranks in the top 6.7% of today's 32697 analyzed articles.

Get summaries of news with significance over 5.5 (usually ~10 stories per week). Read by 10,000+ subscribers:


Quasar Linux malware targets software developers with rootkit and credential-stealing features | News Minimalist