Forgot your password?
typodupeerror

+ - Trojanized SSH daemon in the wild->

Submitted by Anonymous Coward
An anonymous reader writes "It is no secret the SSH binaries can be backdoored. It is nonetheless interesting to see analysis of real cases where trojanized version of the daemon are found in the wild. In this case, the binary not only lets the attacker log onto the server if he has a hardcoded password, the attacker is also granted access if he/she has the right SSH key. The backdoor also logs all username and passwords to exfiltrate them to a server hosted in Iceland."
Link to Original Source
This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Trojanized SSH daemon in the wild

Comments Filter:

"Our vision is to speed up time, eventually eliminating it." -- Alex Schure

Working...