#BASHed Evolution Of Shellshock Attack Payloads
ID: 07628466-9eeb-5d27-b2fc-5a9b3bc84703
STIX ID: report--07628466-9eeb-5d27-b2fc-5a9b3bc84703
Feed Name: Zscaler Security Research Blog
Threat Score
Zscaler ThreatLabZ reports active Shellshock (CVE-2014-6271) exploit activity delivering Perl IRC bots and Linux.Tsunami DDoS malware; attackers employ persistence (cronjobs), evasion (Base64 and plain-text source transfer), stealth (clearing bash history and shredding scripts), and even attempt to patch compromised hosts to block competitors—administrators should patch Bash and check for the described IOCs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
