Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Linux wiper malware is hidden in malicious Go module on github
    Security

    Linux wiper malware is hidden in malicious Go module on github

    PineapplesUpdateBy PineapplesUpdateMay 6, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Linux wiper malware is hidden in malicious Go module on github
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Linux wiper malware is hidden in malicious Go module on github

    A supply-chain attack targets the Linux server, which targets the disc-wiping malware hidden in the Gold Module published on the zethab.

    The expedition was detected last month and included “highly objected codes” to retrieve and execute the remote payload.

    Full disk destruction

    This attack is specifically designed for Linux -based server and developer environment, as a destructive payload – a bash script name done.sh.shA ‘DD’ command runs for the file-wiping activity.

    In addition, the payload is verified that it moves in a linux environment (Runtime.goos == “Linux”) Before trying to execute.

    An analysis of the supply-chain security company socket shows that the command overwrite with zero with every bite of the data, causing irreversible data loss and system failure.

    The target is primary storage volume, /Dev/SDAIt holds important system data, user files, databases and configurations.

    “By populating the entire disk with zero, the script file system structure, operating system and all user data completely destroys, provides the system unbootable and unattainable” – – – – – – – – – – – – – – Socket

    Researchers discovered the attack in April and identified three Go modules on GITHUB, which has since been removed from the stage:

    • github (.) com/truthfulpharm/prototransform
    • github (.) com/blancloggia/go-mcp
    • github (.) com/steelpoor/tlsproxy

    All three modules have an obfacted code that decodes in the command that uses ‘WGET’ to download malicious data-wiping scripts (/bin/bin or/bin/SH).

    According to socket researchers, the payload is executed immediately after download, “almost no time for reaction or recovery.”

    The malicious GO module has applied legal projects to convert the message data to convert message data to convert message data for various forms (prototransform), a GO implementation of model reference protocol (GO-MCP), and TLS Proxy Tools that TCP and HTTP server (TLSPROXY).

    Researchers at the socket have warned that the minimum risk for analyzed disastrous modules can also greatly affect the full data loss.

    Due to the decentralized nature of the GO ecosystem that lacks proper investigation, the package of various developers may have the same or similar names.

    The attackers can take advantage of this to take advantage of this that appears valid and wait for developers to integrate malicious code in their projects.


    Red Report 2025

    Based on the analysis of 14M malicious tasks, search for the top 10 MITERAT & CK techniques behind the 93% attacks and how to defend them against them.

    Github hidden Linux malicious Malware module wiper
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleOne of our favorite foam mattress toppers is 25% discount for weeks
    Next Article A couple’s small business is a multimilian-dollar success
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    These 7 Linux commands are obsolete so don’t use them – here’s why

    January 14, 2026
    Startups

    I tried the new Linux Mint 22.3 – it’s a masterclass in polish and quality of life improvements

    January 12, 2026
    Startups

    The 6 Linux distros I expect to rule in 2026 – and why

    January 6, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2026 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.