Comment on Absolute disaster, RAT backdoored through WINE. Assistance with Docker
ushjftye@programming.dev 1 day agoI didn’t own the network, that was the problem. My distro has security updates still, everything comes from repositories. I didn’t containerise everything. That was my fault. WINE had network access and filesystem access and it wasn’t in a container, and the password to the router was plain text. Absolutely chilling, finding the root /run/. 128TB man. I use clamav and it identified winexpiro hidden in a .DLL called .BRM. Supposedly for Windows 6. WINE is just a compatability layer, so you can push any .DLL into it. This is why I NEED to learn commandline docker, because it’s just not fucking safe. I don’t know whose machine it got to first, but once you’re connected to a machine as admin that’s connected to a router as admin. Like Fuck me.
sp3ctr4l@lemmy.dbzer0.com 46 minutes ago
That all sounds like a pretty good diagnosis/evaluation to me.
You got got by somebody.
But do not spend any more time trying to invetigate with the aim of like, determining the culprit.
You need to act defensively.
See my other comment.