Forum Moderators: phranque

Message Too Old, No Replies

Ransomware Gunning for Linux Web Sites

on Linux-based Web servers

         

Taryn_S

8:47 pm on Nov 10, 2015 (gmt 0)

10+ Year Member



[krebsonsecurity.com ]

Article describes linux-based websites being encrypted and held for ransom. Owner must pay using bitcoin and in some cases, even when files were retrieved, the encryption messed with the actual content of the file.

whitespace

11:55 am on Nov 11, 2015 (gmt 0)

10+ Year Member Top Contributors Of The Month



From the linked article:

Typically, the malware is injected into Web sites via known vulnerabilities in site plugins or third-party software — such as shopping cart programs.


In the example given in the article, the server "was infected via an unpatched vulnerability in Magento".

It’s worth noting that the malware requires the compromised user account on the Linux system to be an administrator

Leosghost

12:32 pm on Nov 11, 2015 (gmt 0)

WebmasterWorld Senior Member 10+ Year Member Top Contributors Of The Month



These are not the catastrophes you are looking for..
( linked from the linked article )
[labs.bitdefender.com...]