TF-MAL-elf.3snake
📛 Threat Title
Malware family: 3snake
Description
ThreatFox malware family `elf.3snake`. Printable name: 3snake.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:androidexperto.com
The most effective mitigation is to update the motherboard firmware to a fixed UEFI/BIOS release from Gigabyte or the system vendor that shipped the board. Users should identify the exact motherboard model and hardware revision, compare the currently installed BIOS version against the vendor's support page, and apply the latest stable ...
-
web:deepwiki.com
3snake is a post-exploitation credential harvesting tool designed for rooted Linux servers. It operates by monitoring process creation events and attaching ptrace to target processes (sshd, sudo, su, ssh clients, passwd) to intercept system calls containing authentication credentials.
-
web:github.com
Tool for extracting information from newly spawned processes - blendin/ 3snake
-
web:malpedia.caad.fkie.fraunhofer.de
This page gives an overview of all malware families that are covered on Malpedia, supplemented with some basic information for each family .
-
web:securitytoolkit.github.io
Interactive cheat sheet of security tools collected from public repos to be used in penetration testing or red teaming exercises.
-
web:www.breachsense.com
Complete malware remediation now requires addressing both the infected endpoint and the stolen authentication data. Your malware incident response playbook must account for both.
-
web:www.cisa.gov
It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.
-
web:www.cybereason.com
This report provides an overview of key features of the Snake # malware and similarities discovered in the staging mechanisms with two other information-stealing malware variants, FormBook and Agent Tesla...
-
web:www.ic3.gov
Overview Threat actors are deploying ATM jackpotting malware , including the Ploutus family malware , to infect ATMs and force them to dispense cash. Ploutus malware exploits the eXtensions for Financial Services (XFS), the layer of software that instructs an ATM what to physically do. When a legitimate transaction occurs, the ATM application sends instructions through XFS for bank authorization ...
-
web:www.ncsc.gov.uk
How to defend organisations against malware or ransomware attacks.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.