this post was submitted on 01 Mar 2024
13 points (100.0% liked)

Cybersecurity

5983 readers
529 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

founded 2 years ago
MODERATORS
 

New Linux malware, GTPDOOR, targets telecom networks adjacent to GPRS roaming exchanges (GRX) using GTP for C2 communications. Discovered by security researcher haxrob, it's likely linked to LightBasin (UNC1945), known for telecom attacks. GTPDOOR masquerades as a syslog process and uses raw sockets to receive UDP messages. It covertly executes commands via GTP-C Echo Request messages, responding to external probes with crafted TCP packets.

no comments (yet)
sorted by: hot top controversial new old
there doesn't seem to be anything here