Categories: News

Linux Ransomware Can Put Bitcoin Users At Risk

Linux experts have always felt their operating system to be one of the most secure in the world, as there are very little viruses or spyware to be found on Linux these days. But all of that is coming to change, as a newly released type of ransomware is focusing all of its attention on Linux users all over the world.

Also read: FIAP Technical University in São Paulo Experiments with Bitcoin

Ransomware Makes Its Way To Linux Systems

Up until this point, the most obvious operating system to attack with ransomware was Windows. Keeping in mind how this is the most commonly used operating system in the world, infecting many people is not as difficult as it sounds where Windows is concerned. Different operating systems, on the other hand, are very rarely affected by the same type of virii and other nasty stuff that plagues their Microsoft counterparts.

This is longer the case, though, as a new form of encryption malware has been detected on the Linux operating system recently. Labelled as “Linux Encoder 1”, this malware is – for the most part – targeting web servers by encrypting all of the content located on these machines, and attempting to force the user to pay a ransomware price of 1 Bitcoin.

Injecting this ransomware on Linux web servers can be done by exploiting a vulnerability in the Magento CMS. Even though a patch was released on October 31 this year, not all of the web servers have been upgraded by the end user. Especially e-commerce platforms are at risk due to this vulnerability, making them a prone target for a ransomware attack.

Related Post

That being said, there are concerns regarding other content management systems being vulnerable to some form of exploit as well. But there is a silver lining as well, as the exploit can only be executed if an attacker gains administrator privileges on the web server. As you would come to expect from ransomware, there are a few certain file types and systems that are being targeted specifically.

Nginx, Apache, and MySQL are of particular interest to this ransomware, as these are high-profile file systems where users store a lot of sensitive data. However, file types are not safe from harm either, as this ransomware goes after Windows executables,  and file extensions such as .asp, .jar, and any form of a document.

At the time of publication, there have been no reports regarding Bitcoin users being affected by this malware on Linux. However, one can rest assured this malware has the potential to encrypt wallet.dat files as well. All readers using the Magento CMS system are advised to upgrade their installation asap, to prevent any harm.

Source: Ars Technica

Image credit 1,2

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Ondo Facilitates Big Banks’ Connection to Blockchain in Historic Settlement

A crucial development is taking place at the intersection of legacy finance and blockchain as…

5 hours ago

Morgan Stanley Adds Crypto Trading To E*Trade With Aiming Millions Of Retail Investors

Morgan Stanley is taking a big step into digital assets space with the launch of…

5 hours ago

Brian Armstrong Sets Course for AI-Driven Transformation As Coinbase Cuts 14% of Workforce

Coinbase is about to undergo one of its largest structural reorganisations in some time, with…

15 hours ago

$150M Crypto Ponzi Scheme Crumbles, Forming Global Fraud Network As Investigators Freeze $41.5M

The suspicious DSJ Exchange (DSJEX) and BG Wealth Sharing scheme, now confirmed a Ponzi operation,…

15 hours ago

BlackRock And Fidelity Lead $532 Million In Institutional Bitcoin ETF Inflows As Demand Soars Following Ceasefire

Demand from institutions is heating up again, with U.S. spot Bitcoin ETFs logging a tally…

1 day ago

Western Union Launches USDPT Stablecoin on Solana to Transform Global Payments Infrastructure

Western Union expands its participation in the digital asset ecosystem with USDPT, a Solana native…

2 days ago