A new and previously undetected malware dubbed 'Lightning Framework' targets Linux systems and can be used to backdoor infected devices using SSH and deploy multiple types of rootkits. . Described as a "Swiss Army Knife" in a report published today by Intezer, Lightning Framework is a modular malware that also comes with support for plugins. "The framework has both passive and active capabilities for communication with the threat actor, including opening up SSH on an infected machine, and a polymorphic malleable command and control configuration," Intezer security researcher Ryan Robinson said . . Tempest Suite is an emerging Linux malicious software that deploys rootkits and covert entry points, enabling unauthorized SSH connections for cybercriminals.. Linux Malware, Rootkit Threats, DDoS Backdoor, Lightning Framework, Open Source Security. . LinuxSecurity.com Team
If you want to leave certain nice to do's or ease of use functionality available to your self such as leaving SSH open only to root or having a machine with anonymous FTP access available, then take a slightly different approach to securing your environment (or those particular machines): layered security. Without changing the physical layout of your network, change the network layout using iptables and/or tcp wrappers. . This is essentially saying that all traffic that you want to funnel to Server II or Server III will now go through server I. This can be used in a variety of ways. Let The link for this article located at Eric Lubow is no longer available. . In Linux environments, balancing solid security with user convenience is challenging. Layered strategies enhance system integrity while keeping workflows seamless.. Linux Security Strategies, Layered Security, Network Configuration. . LinuxSecurity.com Team
Since it. The link for this article located at Think Hole is no longer available. . Implement crucial measures to bolster the security of your SSH connections and safeguard your Linux servers against unauthorized intrusion.. SSH Security Best Practices, Enhanced SSH Access Control, Secure Linux Servers. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.