Visualização normal

Ontem — 7 de Setembro de 2026ASEC BLOG
  • ✇ASEC BLOG
  • Detection and Removal of the Syslogk Rootkit in a Linux Environment ATCP
    1. Overview The AhnLab SEcurity intelligence Center (ASEC) continuously monitors various threats targeting Linux environments. Techniques that modify the Linux kernel to conceal malware and signs of compromise have been used for a long time, and Syslogk is one such rootkit that operates in this manner. This document provides an analysis of the key features […]
     

Detection and Removal of the Syslogk Rootkit in a Linux Environment

Por:ATCP
2 de Setembro de 2026, 12:00
1. Overview The AhnLab SEcurity intelligence Center (ASEC) continuously monitors various threats targeting Linux environments. Techniques that modify the Linux kernel to conceal malware and signs of compromise have been used for a long time, and Syslogk is one such rootkit that operates in this manner. This document provides an analysis of the key features […]
Antes de ontemASEC BLOG
  • ✇ASEC BLOG
  • Guest at Midnight: Analysis of EndPoint (Midnight) ATCP
    Summary EndPoint is a ransomware variant formerly known as Midnight, which is believed to be built on the Babuk ransomware framework. It targets not only Windows environments, but also ESXi and NAS environments, and uses a double extortion method that combines file encryption with Data exfiltration threats. Overview Since the Babuk source code leak, several […]
     

Guest at Midnight: Analysis of EndPoint (Midnight)

Por:ATCP
20 de Maio de 2026, 12:00
Summary EndPoint is a ransomware variant formerly known as Midnight, which is believed to be built on the Babuk ransomware framework. It targets not only Windows environments, but also ESXi and NAS environments, and uses a double extortion method that combines file encryption with Data exfiltration threats. Overview Since the Babuk source code leak, several […]
❌
❌