SilentBrute Trojan
First observed in 2013, SilentBrute (also known as SilentBruter) is a multi-platform brute-force trojan written in Go.
Summary
First observed in 2013, SilentBrute (also known as SilentBruter) is a multi-platform brute-force trojan written in Go.
Affected platforms
The following platforms are known to be affected:
Threat details
At the time of publication, it is unclear how SilentBrute is delivered, although there are unconfirmed reports indicating it may be distributed as a secondary payload in spam or phishing campaigns.
Once installed, SilentBrute will collect system information and send it to a command and control (C2) server. It then downloads a configuration file detailing the services and applications SilentBrute should attempt to brute-force. It an attack is successful, SilentBrute will send the compromised credentials back to the C2 for further use.
Remediation steps
| Type | Step |
|---|---|
|
To prevent and detect a trojan infection, ensure that:
|
Last edited: 14 February 2020 2:45 pm