7
Techniques
1
Toolsets
0
CVEs Referenced
0
KEV Entries
About Windigo

The Windigo group has been operating since at least 2011, compromising thousands of Linux and Unix servers using the Ebury SSH backdoor to create a spam botnet. Despite law enforcement intervention against the creators, Windigo operators continued updating Ebury through 2019.

View MITRE record ↗

Toolsets (1)
🐛
Ebury S0377
Malware · Linux
↑