New Quasar Linux Malware Is Stealing Developer Credentials with a Hidden Rootkit

https://hothardware.com/contentimages/NewsItem/70533/content/16x9_2133x1200_highres-linux-red.jpg

Researchers at Trend Micro have identified a frightening new Linux rootkit, dubbed Quasar Linux (QLNX,) and developers should be especially concerned. Per the report (which we spotted through Bleeping Computer's coverage,) QLNX is a Linux implant "designed for stealth and long-term persistence" that hides in memory and uses seven distinct persistence mechanisms. When combined, its persistence mechanisms make it difficult to actually "kill" QLNX, since any one of the seven can restart the process the instant it stops running.

Beyond stealth and persistence functionality, QLNX is also a dangerous, multi-faceted piece of malware. Process injection, peer-to-peer-networking, surveillance functionalities, credential harvesting, and filesystem monitoring are all within QLNX's capabilities. Since it's primarily being targeted at development environments (particularly across GitHub, AWS, Kubernetes, and more,) the intent seems to be to integrate QLNX into otherwise innocent apps and server hosts and perform supply-chain attacks by publishing malicious packages. We've seen that...

Copyright of this story solely belongs to hothardware.com. To see the full text click HERE

Read more

https://cdn.mos.cms.futurecdn.net/CLGbrdWAVLDWt8BfX3tui6-1920-80.jpg

'I worked for like 15 years on just Hearts of Iron and history, so you want to do something different' — Afterworld director explains the fantasy post-apocalyptic setting, and the pub trip that inspired the game

* Afterworld is the first Paradox grand strategy game with an original fantasy setting in a decade * Director Dan Lind says this brings a level of "design freedom" that would be possible in few real-world settings * He also wanted "to do something different" after working on historical