Skip to content
Cyble Discovers Advanced Linux Malware Campaign Utilizing Mirai Variant

Cyble Discovers Advanced Linux Malware Campaign Utilizing Mirai Variant

First seen 16 Dec 2025, 00:52 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

Cyble has identified a sophisticated malware campaign utilizing the V3G4 variant of Mirai, targeting Linux servers and IoT devices. This multi-stage infection chain employs advanced evasion techniques for dual monetization, affecting various architectures in cloud environments.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 213d ago How this analysis works

More articles in this cluster (2)

Following this threat?

Track Mirai in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed