Skip to content

Malware

xdr33

According to 360 netlab, this backdoor was derived from the leaked CIA Hive project.

xdr33 is a Linux malware family.

Background

As reported by 360 netlab, this backdoor is based on the leaked CIA Hive project. It spreads by exploiting an F5 vulnerability and secures its communications with SSL using a forged Kaspersky certificate.


Source: Malpedia (Fraunhofer FKIE).