Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Linux

20 articles

GBHackers general Linux Aug 17

Evooo1Bot Turns Compromised Routers Into DDoS Bots and Anonymous Proxy Nodes

A newly identified Linux botnet dubbed Evooo1Bot is targeting vulnerable internet-facing routers, edge appliances, cameras, and enterprise systems, combining...

T1078

GBHackers → Details

BleepingComputer general Linux Aug 15

New Evooo1Bot Linux botnet turns routers into traffic relay nodes

A new Mirai-based modular Linux botnet malware called Evooo1Bot has been targeting internet-facing gateway devices, turning them into SOCKS5 traffic relay no...

BleepingComputer → Details

Infosecurity Magazine general Linux Aug 14

New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies

Evooo1Bot is a newly observed botnet based on the Mirai framework but equipped with advanced features, turning edge devices into persistent proxies

Infosecurity Magazine → Details

GBHackers general Linux Aug 14

Dysphoria Hijacks Routers, Gateways and IP Cameras to Build Massive IoT Botnet

The Dysphoria botnet has expanded into a major Internet of Things threat, with a new Shadowserver Special Report identifying approximately 296,000 compromise...

T1498

GBHackers → Details

GBHackers general Linux AMD Aug 14

New DRAM Scrambling Attack Unlocks AMD CPU PSP, SMM and Microcode

Security researcher Christopher Domas has released a proof-of-concept project called “skitter-creek-bath-salts,” which demonstrates a vulnerability in AMD’s ...

GBHackers → Details

Fortinet Blog vendor Linux Aug 13

Multi-Functional Linux Botnet “Evooo1Bot”

FortiGuard Labs analyzes Evooo1Bot, a modular Linux botnet targeting internet-facing devices with DDoS, SSH attacks, CVE exploits, and SOCKS relays

Fortinet Blog → Details

GBHackers general Linux Aug 13

Gunra Ransomware Uses Up to 100 ChaCha20 Threads to Rapidly Encrypt Linux Systems

Gunra ransomware has added a Linux encryptor to its arsenal, giving affiliates control over how they lock enterprise data. The command-line payload can launc...

GBHackers → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-576: Linux Kernel XFRM Race Condition Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-575: Linux Kernel Net Scheduler Packet Classifier API Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-574: Linux Kernel Net Scheduler Connection Tracking Race Condition Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-573: Linux Kernel KSMBD Response Header Out-Of-Bounds Read Information Disclosure Vulnerability

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Linux Kernel KSMBD. Authentication is not required ...

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-572: Linux Kernel XFRM Race Condition Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-571: Linux Kernel Net Scheduler Packet Classifier API Use-After-Free Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-570: Linux Kernel IGMP Subsystem Race Condition Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-569: Linux Kernel Net Scheduler True Link Equalizer Race Condition Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 13

ZDI-26-568: Linux Kernel Net Scheduler Race Condition Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

SANS ISC advisories Linux Aug 12

Linux Kernel Process Accounting, (Wed, Aug 12th)

A couple of days ago, Xavier posted about Atuin to gain more insight into the command history. Atuin does a great job of better organizing what is usually ha...

SANS ISC → Details

GBHackers general Linux Docker Aug 12

Docker CopyEscape Vulnerability Enables Host File Overwrite and Root Code Execution

A critical vulnerability in Docker, tracked as CVE-2026-17106 and referred to as “CopyEscape,” allows malicious containers to overwrite files on the host sys...

1 IOC

GBHackers → Details

SC Media general Linux Aug 11

Mozilla issues new GPG key after accidental exposure

The exposed GPG key was used to sign artifacts like Linux tarballs and RPM packages.

SC Media → Details

The Hacker News general Linux Aug 11

Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo

Mozilla has scrapped the cryptographic key behind Firefox and Thunderbird downloads for Linux after an unencrypted copy of it was committed by mistake to one...

The Hacker News → Details

«Previous page 1 ... 3 4 5 6 7 ... 9 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA