S0341WindowsLinux

S0341Xbash

Platforms
2
ATT&CK
14.1
References
2

Description

[Xbash](https://attack.mitre.org/software/S0341) is a malware family that has targeted Linux and Microsoft Windows servers. The malware has been tied to the Iron Group, a threat actor group known for previous ransomware attacks. [Xbash](https://attack.mitre.org/software/S0341) was developed in Python and then converted into a self-contained Linux ELF executable by using PyInstaller.(Citation: Unit42 Xbash Sept 2018)

Platforms· 2

WindowsLinux

References

  1. https://attack.mitre.org/software/S0341
  2. https://researchcenter.paloaltonetworks.com/2018/09/unit42-xbash-combines-botnet-ransomware-coinmining-worm-targets-linux-windows/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
Iron Group
Software
XData
Software
Python
Software
XiaoBa ransomware
Software
Unknown XTBL
Software
Xolzsec
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.