New AcidRain Linux Malware Variant “AcidPour” Found Targeting Ukraine
ID: 2b4ae608-e7d9-5ea3-a04f-24dbad1aa3cc
STIX ID: report--2b4ae608-e7d9-5ea3-a04f-24dbad1aa3cc
Feed Name: HackRead
Threat Score
SentinelLabs researchers disclosed "AcidPour," a new Linux x86 variant of the AcidRain wiper observed in Ukraine; compiled for x86 rather than MIPS, it shares some strings with AcidRain but has a distinct codebase and expanded wiping logic that references UBI and LVM virtual block devices, suggesting broader destructive targets. The scope and specific victims remain unclear; SentinelLabs has alerted stakeholders and recommended defensive measures such as user training against phishing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
