New SysJoker Backdoor Targets Windows, Linux, and macOS

Security Alert
Published January 12, 2022

In December 2021, Intezer discovered a new multi-platform backdoor that targets Windows, Mac, and Linux. The Linux and Mac versions are fully undetected in VirusTotal. Intezer named this backdoor SysJoker.

GROUP:
MALWARE FAMILY:
SysJoker

ATT&CK IDS:
T1059 – Command and Scripting Interpreter,T1134 – Access Token Manipulation,T1070 – Indicator Removal on Host,T1036 – Masquerading,T1132 – Data Encoding,T1102.001 – Dead Drop Resolver

Related Content

Ready to Simplify IT Management?

We will work with you to select a plan that meets your business needs, while helping you get more from your technology, with less work, and less worry about making it all run right.