SYMBOLCOMMON_NAMEaka. SYNONYMS
elf.fontonlake (Back to overview)

FontOnLake


This family utilizes custom modules allowing for remote access, credential harvesting (e.g. by modifying sshd) and proxy usage.

It comes with a rootkit as well.

References
2021-10-07ESET ResearchVladislav Hrčka
FontOnLake: Previously unknown malware family targeting Linux
FontOnLake

There is no Yara-Signature yet.