{"id":889,"date":"2024-03-01T10:44:09","date_gmt":"2024-03-01T08:44:09","guid":{"rendered":"https:\/\/techlance.ddns.net\/?p=889"},"modified":"2024-03-01T10:44:20","modified_gmt":"2024-03-01T08:44:20","slug":"gtpdoor-linux-haittaohjelma","status":"publish","type":"post","link":"https:\/\/techlance.ddns.net\/en\/gtpdoor-linux-haittaohjelma\/","title":{"rendered":"GTPDOOR Linux-haittaohjelma"},"content":{"rendered":"<p>GTPDOOR Linux-haittaohjelma kohdistuu teleyrityksiin, hy\u00f6dynt\u00e4en GPRS-roaming-verkkoja<\/p>\n\n\n\n<p>Uhkien mets\u00e4st\u00e4j\u00e4t ovat l\u00f6yt\u00e4neet uuden Linux-haittaohjelman nimelt\u00e4\u00e4n GTPDOOR, joka on suunniteltu k\u00e4ytt\u00f6\u00f6notettavaksi teleyritysten verkkoissa, jotka ovat vierekk\u00e4in GPRS-roaming-vaihtojen (GRX) kanssa.<\/p>\n\n\n\n<p>Haittaohjelma on uusi siin\u00e4 mieless\u00e4, ett\u00e4 se hy\u00f6dynt\u00e4\u00e4 GPRS Tunnelointiprotokollaa (GTP) komento- ja ohjausviestint\u00e4\u00e4n (C2).<\/p>\n\n\n\n<p>GPRS-roaming mahdollistaa tilaajien p\u00e4\u00e4syn GPRS-palveluihin, kun he ovat kotimobiiliverkon ulottumattomissa. T\u00e4m\u00e4 mahdollistetaan GRX:n avulla, joka kuljettaa roaming-liikennett\u00e4 k\u00e4ytt\u00e4en GTP:t\u00e4 vierailevan ja kotimaisen julkisen maanlaajuisen mobiiliverkon (PLMN) v\u00e4lill\u00e4.<\/p>\n\n\n\n<p>GTPDOOR Linux Malware Targets Telecoms, Exploiting GPRS Roaming Networks Threat hunters have discovered a new Linux malware called GTPDOOR that&#8217;s designed to be deployed in telecom networks that are adjacent to GPRS roaming exchanges (GRX) The malware is novel in the fact that it leverages the GPRS Tunnelling Protocol (GTP) for command-and-control (C2) communications. GPRS roaming allows subscribers to access their GPRS services while they are beyond the reach of their home mobile network. This is facilitated by means of a GRX that transports the roaming traffic using GTP between the visited and the home Public Land Mobile Network (PLMN).&#8221;<\/p>\n\n\n\n<p>https:\/\/thehackernews.com\/2024\/02\/gtpdoor-linux-malware-targets-telecoms.html <\/p>","protected":false},"excerpt":{"rendered":"<p>GTPDOOR Linux-haittaohjelma kohdistuu teleyrityksiin, hy\u00f6dynt\u00e4en GPRS-roaming-verkkoja Uhkien mets\u00e4st\u00e4j\u00e4t ovat l\u00f6yt\u00e4neet uuden Linux-haittaohjelman nimelt\u00e4\u00e4n GTPDOOR, joka on suunniteltu k\u00e4ytt\u00f6\u00f6notettavaksi teleyritysten verkkoissa, [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[9],"tags":[15],"class_list":["post-889","post","type-post","status-publish","format-standard","hentry","category-security","tag-tietoturva"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/889","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/comments?post=889"}],"version-history":[{"count":0,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/889\/revisions"}],"wp:attachment":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/media?parent=889"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/categories?post=889"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/tags?post=889"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}