Slashdot Mirror


New Linux Trojan Can Spy on Users by Taking Screenshots and Recording Audio (drweb.com)

An anonymous reader writes: Dr.Web, a Russian antivirus maker, has detected a new threat against Linux users: the Linux.Ekoms.1 trojan. It includes functionality that allows it to take screenshots and record audio. While the screenshot activity is working just fine, Dr.Web says the trojan's audio recording feature has not been turned on, despite being included in the malware's source code. "All information transmitted between the server and Linux.Ekoms.1 is encrypted. The encryption is initially performed using the public key; and the decryption is executed by implementing the RSA_public_decrypt function to the received data. The Trojan exchanges data with the server using AbNetworkMessage."

3 of 130 comments (clear)

  1. Re:shocked, shocked i say! by Bert64 · · Score: 3, Insightful

    Key point being "went down", rather than pose any risk to their users they decided to shut everything down until they could properly investigate the breach.
    Any commercial business would want to be back up and running again as soon as possible, even if that meant cutting corners.

    --
    http://spamdecoy.net - free throwaway anonymous email - avoid spam!
  2. Re:Stupid users by Barsteward · · Score: 4, Insightful

    as they haven't disclosed how you get infected, i see this as the usual antivirus maker ploy of trying to increase sales by scare stories with nothing to back it up.

    --
    "The hands that help are better far than lips that pray." - Robert Ingersoll (1833-1899)
  3. Re:Stupid users by Barsteward · · Score: 4, Insightful

    where on earth did i say it was a virus, dickhead? or shall i change "infected" to "deployed" to make your stupid nitpicking mind happier?

    --
    "The hands that help are better far than lips that pray." - Robert Ingersoll (1833-1899)