STEALTHWORKER

STEALTHWORKERStealthWorker

Description

Hackers are running a new campaign which drops the StealthWorker brute-force malware on Windows and Linux machines that end up being used to brute force other computers in a series of distributed brute force attacks. As unearthed by FortiGuard Labs' Rommel Joven, the StealthWorker Golang-based brute forcer (also known as GoBrut) discovered by Malwarebytes at the end of February is actively being used to target and compromise multiple platforms. StealthWorker was previously connected to a number of compromised Magento-powered e-commerce websites on which attackers infiltrated skimmers designed to exfiltrate both payment and personal information. As later discovered, the malware is capable of exploiting a number of vulnerabilities in to infiltrate Magento, phpMyAdmin, and cPanel Content Management Systems (CMSs), as well as brute force its way in if everything else fails.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
GhostMiner
Software
GoScanSSH
Software
KingMiner
Software
MagentoCore Malware
Software
KmsdBot
Software
Lokibot
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.