FBI and NSA Recommend Updating Your Linux System to Kernel Version 3.7 or Later
Subject: FBI and NSA Recommend Updating Your Linux System to Kernel Version 3.7 or Later
Good day from Singapore,
Please refer to the following news article and cybersecurity advisory.
Article: FBI and NSA expose new Linux malware Drovorub, used by Russian state hackers
Link: https://www.zdnet.com/article/fbi-and-nsa-expose-new-linux-malware-drovorub-used-by-russian-state-hackers/
QUOTE:
"To prevent attacks, the agency recommends that US organizations update any Linux system to a version running kernel version 3.7 or later, "in order to take full advantage of kernel signing enforcement," a security feature that would prevent APT28 hackers from installing Drovorub's rootkit."
Cybersecurity Advisory: National Security Agency and Federal Bureau of Investigation Joint Cybersecurity Advisory: Russian GRU 85th GTsSS Deploys Previously Undisclosed Drovorub Malware, August 2020 Rev 1.0
Link: https://media.defense.gov/2020/Aug/13/2002476465/-1/-1/0/CSA_DROVORUB_RUSSIAN_GRU_MALWARE_AUG_2020.PDF
Singaporean IT Consultant Mr. Turritopsis Dohrnii Teo En Ming is proud to be a Linux and open source software enthusiast.
REFERENCES
==========
[1] https://lkml.org/lkml/2020/8/17/822
[2] http://lkml.iu.edu/hypermail/linux/kernel/2008.2/01169.html
[3] https://marc.info/?l=linux-kernel&m=159767530126705&w=2
[4] https://lwn.net/ml/linux-kernel/16b3df0ce6353e4f4b2dbf4ad5bca585%40teo-en-ming.com/
[5] http://lists.linuxfromscratch.org/pipermail/lfs-chat/2020-August/029147.html
Good day from Singapore,
Please refer to the following news article and cybersecurity advisory.
Article: FBI and NSA expose new Linux malware Drovorub, used by Russian state hackers
Link: https://www.zdnet.com/article/fbi-and-nsa-expose-new-linux-malware-drovorub-used-by-russian-state-hackers/
QUOTE:
"To prevent attacks, the agency recommends that US organizations update any Linux system to a version running kernel version 3.7 or later, "in order to take full advantage of kernel signing enforcement," a security feature that would prevent APT28 hackers from installing Drovorub's rootkit."
Cybersecurity Advisory: National Security Agency and Federal Bureau of Investigation Joint Cybersecurity Advisory: Russian GRU 85th GTsSS Deploys Previously Undisclosed Drovorub Malware, August 2020 Rev 1.0
Link: https://media.defense.gov/2020/Aug/13/2002476465/-1/-1/0/CSA_DROVORUB_RUSSIAN_GRU_MALWARE_AUG_2020.PDF
Singaporean IT Consultant Mr. Turritopsis Dohrnii Teo En Ming is proud to be a Linux and open source software enthusiast.
REFERENCES
==========
[1] https://lkml.org/lkml/2020/8/17/822
[2] http://lkml.iu.edu/hypermail/linux/kernel/2008.2/01169.html
[3] https://marc.info/?l=linux-kernel&m=159767530126705&w=2
[4] https://lwn.net/ml/linux-kernel/16b3df0ce6353e4f4b2dbf4ad5bca585%40teo-en-ming.com/
[5] http://lists.linuxfromscratch.org/pipermail/lfs-chat/2020-August/029147.html
Comments
Post a Comment