The NSA and FBI warn that a new Linux malware variant - dubbed Drovorub - is being used by APT 28 to compromise networks, execute malicious commands and steal sensitive data. . The FBI and NSA have issued a joint report warning that Russian state hackers are using a previously unknown piece of Linux malware to stealthily infiltrate sensitive networks, steal confidential information, and execute malicious commands. In a report that’s unusual for the depth of technical detail from a government agency, officials said the Drovorub malware is a full-featured tool kit that was has gone undetected until recently. The malware connects to command and control servers operated by a hacking group that works for the GRU, Russia’s military intelligence agency that has been tied to more than a decade of brazen and advanced campaigns, many of which have inflicted serious damage to national security. “Information in this Cybersecurity Advisory is being disclosed publicly to assist National Security System owners and the public to counter the capabilities of the GRU, an organization which continues to threaten the United States and U.S. allies as part of its rogue behavior, including their interference in the 2016 US Presidential Election as described in the 2017 Intelligence Community Assessment, Assessing Russian Activities and Intentions in Recent US Elections (Office of the Director of National Intelligence, 2017),” officials from the agencies wrote. . Recent Linux-based malware called Drovorub poses significant risks to networks and national security, according to alerts issued by the FBI and NSA.. Drovorub Malware, APT 28 Threat, NSA Warning, Linux Security Risks. . LinuxSecurity.com Team
Another day, another restaurant chain data breach – this time, Cheddar's Scratch Kitchen. The Darden Restaurants-owned food chain said it was alerted this month that its network had been hacked and customer payment card data exposed.. The cyberattack occurred sometime between Nov. 3, 2017, and Jan. 2, 2018. The culprits "were able to access and potentially obtain payment card information used to make purchases in certain Cheddar's Scratch Kitchen restaurants" in some states, the company said in a breach notification notice on its website. The affected states are Alabama, Arizona, Arkansas, Delaware, Florida, Illinois, Indiana, Iowa, Kansas, Louisiana, Maryland, Michigan, Missouri, Nebraska, New Mexico, North Carolina, Ohio, Oklahoma, Pennsylvania, South Carolina, Texas, Virginia, and Wisconsin. The link for this article located at DarkReading is no longer available. . Cheddar's Scratch Kitchen experienced a data compromise affecting customer credit card details. Discover the implications of this security incident.. Cheddars Scratch Kitchen, Data Incident, Payment Security, Cyber Threats. . LinuxSecurity.com Team
Symantec today backed away from earlier statements regarding the theft of source code of some of its flagship security products, now admitting that its own network was compromised. . In a statement provided to the Reuters news service, the security software giant acknowledged that hackers had broken into its network when they stole source code of some of the company's software. The link for this article located at Network World is no longer available. . Symantec admits to a breach in its network security, resulting in the unauthorized acquisition of its proprietary source code, marking a departure from its previous assertions.. symantec source code theft, network breach, cybersecurity incident. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.