A
collection of malware developed to create a sophisticated network of
botnets that can distribute spam, redirect Web traffic and infect users'
computers with malware, all while keeping the location of the cyber
criminals perpetrating the attacks a secret.
Operation
Windigo is believed to have been growing behind the scenes for the past
three years. It gained public attention in March 2014, when software
security firm ESET revealed it was responsible for compromising more
than 25,000 Linux servers.
At
one point during this time the Windigo network was sending 35 million
daily spam messages and redirecting more than 500,000 web visitors to
exploits kits each day, according to ESET.
Operation
Windigo primarily relies on two Linux backdoors, Linux/Ebury and
Linux/Cdorked, to steal login credentials, compromise Web servers and
redirect traffic.
Notable victims of Operation Windigo have included cPanel, a popular web hosting control panel platform, and kernel.org.
Comments
Post a Comment