Story thread · 2 reports / 2 sources

Tengu botnet reboots Linux devices to survive removal

helpnetsecurity.com · 13d

How the coverage leans

Across 2 sources · syndicated copies counted once

A new Mirai-derived IoT botnet can force an infected Linux device to reboot once its main process is killed, giving its persistence mechanisms another opportunity to relaunch it, Nozomi Networks Labs has found. The malware, dubbed Tengu, was discovered by a machine-learning system the company uses to identify malware families that do not match known signatures. Researchers first observed the dropper reaching their honeypots through Telnet credential brute-force attacks. Tengu isn’t just another Mirai variant … More → The post Tengu botnet reboots Linux devices to survive removal appeared first on Help Net Security .

First report: Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process thehackernews.com, 14d

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.