Back Eset Linux and BSD Web Servers At Risk Of Sophisticated Mumblehard Infection, Says ESET
ESET® , a global pioneer in proactive protection for more than two decades, has today published its in-depth technical research paper, entitled ‘ Unboxing Linux/Mumblehard - Muttering Spam for your Servers ’. Linux/Mumblehard targets servers running Linux and BSD systems. The primary purpose of this malware is to use infected systems for spamming bots.
ESET researchers say the malware is made up of two different components. Exploiting vulnerabilities in Joomla and Wordpress, the first component is a generic backdoor that requests commands from its Command and Control server. The second component is a full¬-featured spammer daemon that is launched via a command received by the backdoor. Mumblehard is also distributed via ‘pirated’ copies of a Linux and BSD program known as DirectMailer, software sold on the Yellsoft website for $240.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
