Windigo
Click Me | Description | Partner ID | Partner Link |
---|
Group ID | 119637 |
LittleSis.org ID | |
Description | The Windigo group has been operating since at least 2011, compromising thousands of Linux and Unix servers using the Ebury SSH backdoor to create a spam botnet. Despite law enforcement intervention against the creators, Windigo operators continued updating Ebury through 2019. |
Parent org | |
State/Country | |
website | |
Reference URL | https://attack.mitre.org/groups/G0124/ |
Additional data from LittleSis.org
Check LittleSis.org for additional documentation of items below.
Related Party | Description | Detail | Start | End | Count | Sum | Currency |
---|
No data to show.