VectorLinux

Please login or register.

Login with username, password and session length
Advanced search  

News:

Visit our home page for VL info. For support and documentation, visit the Vector Linux Knowledge Center or search the Knowledge Center and this Forum using the search box above.

Pages: 1 [2]

Author Topic: New rootkit in the wild  (Read 3824 times)

overthere

  • Vectorian
  • ****
  • Posts: 1364
Re: New rootkit in the wild
« Reply #15 on: February 21, 2013, 12:20:28 am »

As it turns out some body was using a windows seven machine on a centos server and it got a keylogger that was not detected and 70 pages later they finally found it. although linux was compromised it was only because no one bothered to scan windows for virus. malwarebytes detected the keylogger. which evidently passed on root passwords when used by an admin. so what was all the fuss..connecting windows to linux is always going to offer the threat. maby I missed something
Logged
Everything Is Relative

retired1af

  • Administrator
  • Vectorian
  • *****
  • Posts: 1342
Re: New rootkit in the wild
« Reply #16 on: February 21, 2013, 03:48:02 am »

The most recent java exploits were not OS specific. Windows, OS X, and Linux were all affected. There were a few cases in that thread where Apple workstations were used to access the servers. No word as yet on the results of scans from those machines.

Bear in mind, Linux is only as secure as the user who's using it. That includes workstations. Far too many think Linux is secure and operate on that assumption.
Logged
ASUS K73 Intel i3 Dual Core 2.3GHz

overthere

  • Vectorian
  • ****
  • Posts: 1364
Re: New rootkit in the wild
« Reply #17 on: February 21, 2013, 06:39:35 am »

One must agree, the reality is the rootkit was designed for centos and as you say other malware has been seen of late. perhaps only a matter of time I would rather not admit. linux does have variety still on its side making it at least more complex for attachers. there are vulnerabilities in linux which may have  been the cause and I am perhaps relieved to think this event was caused by windows.
Logged
Everything Is Relative
Pages: 1 [2]