Kessel
S0487 · Linux
Kessel is an advanced version of OpenSSH which acts as a custom backdoor, mainly acting to steal credentials and function as a bot. Kessel has been active since its C2 domain began resolving in August 2018.
ATT&CK S0487
Sigma rules0
YARA rules0
Live IOCs0