Also see https://asec.ahnlab.com/en/54647/ which links to Ahnlabs more technical description. Seems like it breaks in by guessing passwords and trying to log in via SSH.
this post was submitted on 23 Jun 2023
3 points (100.0% liked)
Linux
69 readers
1 users here now
founded 2 years ago
Wow, literally just a dictionary attack… what a let-down!
Sad that this article contains almost no information other than "malware attacks your ssh". Well... I guess I better buy their firewall if they're not telling me what to fix.