New GoGra Malware Targets Linux Systems Using Microsoft Graph API
A recent report by Symantec reveals a new variant of the GoGra backdoor targeting Linux systems, developed by the espionage group known as Harvester. This malware exploits Microsoft’s infrastructure, using Outlook inboxes for discreet command delivery.
Victims are tricked into executing malicious files disguised as PDFs, granting attackers access to sensitive information. The malware checks an Outlook mailbox for specific emails, decrypts their contents, and executes commands locally, all while masking its activity.
Organizations in telecommunications, government, and IT sectors in South Asia are particularly vulnerable to this attack. As Harvester expands its tactics, the risk to Linux users increases significantly.
To protect against this threat, users should avoid opening unknown attachments, ensure software is updated, and utilize strong email filtering.
Risk Level: High
Source: View Original Report
