Skip to content

Malware

SPAWNSNARE

According to Mandiant, this is a utility that is written in C and targets Linux.

SPAWNSNARE is a Linux malware family.

Background

Mandiant describes SPAWNSNARE as a C-written tool aimed at Linux. It is able to pull the uncompressed Linux kernel image (vmlinux) out into a file and encrypt it with AES, all without relying on any command line tools.


Source: Malpedia (Fraunhofer FKIE).