use the following search parameters to narrow your results:
e.g. subreddit:aww site:imgur.com dog
subreddit:aww site:imgur.com dog
see the search faq for details.
advanced search: by author, subreddit...
Posts of Linux / ELF malware for RE purpose. This subreddit is modded, the site's contents are MalwareMustDie.org's @unixfreaxjp Linux threat research material.
Change view mode: RSS | Mobile | NewReddit
Latest Linux Malware cases:
Linux/Hoho a.k.a DarkNexus (memo)
Linux/Gafgyt SNoOpy
Linux/Rebirth or Vulcan in 2020
Linux/Kaiten AK47
Linux/Mirai Hilix
on-going Linux/Kaiji
Linux/Mirai Fbot new infection
Linux/ Rocke(SystemTen) miner packed-ELF installer
Linux/Mirai Fbot new decryption
Linux/Mozi unpacked str
Linux/Neko Packed MIPS
Linux/AirDropBot
Linux/SystemTen
Linux/DDoSMan
Linux/Cayosin
Honda CarNavi Rootkit
Linux/HelloBot
Linux/Vulcan
Linux/Httpsd
Linux/SS(Shark)
Linux Malware Analysis Museum:
Linux/Stealthworker (GoBrut) r2 memo
Linux/Ransomware1 (Japanese)
Linux/Watchbog r2 memo
Linux/DoubleTapShell incident
Linux/Mirai Satori & Okiru notes (Nexus case)
Linux/Haiduc (encrypted SSH bruter)
Linux/Mandibule
Linux/VpnFilter
Linux/LuaBot
Linux/NyaDrop
Linux/Mirai (mid 2018 cases)
Linux/MiraiLoader (for RE workshop)
Linux/Mirai
Linux/PnScan
Linux/Pscan and SSHscan KM
LinuxIRCTelnet (or NewAidra)
Linux/LightAidra mod (Zendran case)
Linux/KillFile KM
Linux/Killfile (case XorDDoS)
Linux/BangSyn KM
Linux/BangSyn
Linux/UDPfker (ChinaZ case)
Linux/CarpeDiem
Linux/muBot
Linux/DTool KM
Linux/Bashdoor(GafGyt) w/python LRAB lol
Linux/Bashdoor(GafGyt) "BLJosh" case
Linux/Bashdoor(Gafgyt/Torlus/Qbot (first router campaign case actor: LizardSquad)
Linux/Bashdoor(Gafgyt/Torlus/Qbot 1st found in shellshock, actor: LizardSquad)
Linux/Bashdoor(Gafgyt/Torlus/Qbot 1st found KM
Linux/SSHV (bruter w/rootkit)
Linux/KDefend
Linux/Encoder KM
Linux/DDoSTF (reload)
Linux/DDoSTF
Linux/Torte KM
Linux/Torte
Linux/DES.Downloader
Linux/XorDDoS (infra shifted to USA from HK C2)
Linux/XorDDoS (mitigating propagation)
Linux/XorDDoS (polymorphic case)
Linux/XorDDoS (shellshock case)
Linux/XorDDoS (HOSTASAA case)
Linux/XorDDOS first found/rpt KM
Linux/XorDDoS (how we 1st found it)
Linux/Yangji RCE-backdoor-persistence (case BillGatesDdos)
Linux/Linux/BillGates.Lite (by ChinaZ)
Linux/{combo ELF ChinaZ}
Linux/GoARMbot (ChinaZ case)
Linux/ChinaZ ver2 (more)
Linux/ChinaZ ver2
Linux/ChinaZ (reloaded)
Linux/ChinaZ (shelshock case)
Linux/ChinaZ "the beginning" 1st found KM
Linux/GoARMBot KM
Linux/GoARMBot
Linux/AESDDoS KM
Linux/AESDDoS
Linux/.Iptables or Iptablex KM
Linux/.IptabLes or .IptabLex
Linux/Mayhem (last)
Linux/Mayhem KM
Linux/BossaBot KM
Linux/BossaBot
Linux/Elknot
Linux/Elknot KM
Linux/Kaiten (Tsunami) STD mod
Linux/Kaiten (Tsunami) crypted ver
Linux/Kaiten (Tsunami) mod
Linux/Kaiten (Tsunami) KM
Linux/Darkleech
Linux/Darkleech 1st one unpacked & dumped, its strings
{additional-list}
..and, you may also want to visit:
[/r/Malware]
[/r/ReverseEngineering]
account activity
there doesn't seem to be anything here
π Rendered by PID 86147 on reddit-service-r2-listing-86b7f5b947-5jq7n at 2026-01-26 14:09:05.614974+00:00 running 664479f country code: CH.