BlueShell Used in Attacks Against Linux Systems in Korea (2)

BlueShell Used in Attacks Against Linux Systems in Korea (2)

AhnLab SEcurity intelligence Center (ASEC) previously uploaded the article “BlueShell Used in APT Attacks Against Korean and Thai Targets” [1] on the ASEC blog which introduced BlueShell malware strains that were used against Linux systems in Thailand and Korea. The threat actor customized the BlueShell backdoor malware for their attack, and

BlueShell Used in APT Attacks Against Korean and Thai Targets

BlueShell Used in APT Attacks Against Korean and Thai Targets

BlueShell is a backdoor developed in Go. It is available on GitHub and supports Windows, Linux, and Mac operating systems. Currently, it seems the original GitHub repository has been deleted, but the BlueShell source code can be downloaded from other repositories. Notably, the ReadMe file containing the guidelines is in