FritzFrog malware attacks SSH servers to mine Monero

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,154
A sophisticated botnet campaign named FritzFrog has been discovered breaching SSH servers around the world, since at least January 2020.

Written in Golang, FritzFrog is both a worm and a botnet that targets government, education, and finance sectors.
The attack has already managed to infiltrate over 500 servers in the U.S. and Europe, of universities and a railway company.

The advanced nature of FritzFrog lies in its proprietary and fileless P2P implementation written from scratch.
The malware assembles and executes the malicious payload entirely in-memory, making it volatile.
Full report by researchers:
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top