Security News > 2020 > November > Schneider Electric Warns Customers of Drovorub Linux Malware

Schneider Electric Warns Customers of Drovorub Linux Malware
2020-11-14 12:37

One of the security bulletins released this week by Schneider Electric warns customers about Drovorub, a piece of Linux malware that was recently detailed by the NSA and the FBI. The U.S. agencies issued a joint advisory in mid-August to warn organizations that the cyber-espionage group known as APT28, which has been linked to Russia's General Staff Main Intelligence Directorate, has been using a piece of Linux malware named Drovorub.

Schneider Electric has advised customers to implement defense-in-depth recommendations in order to protect their Trio Q Data Radio and Trio J Data Radio devices against the malware.

The French industrial giant told SecurityWeek that while Drovorub can pose a threat to its devices, it's not actually aware of any incident involving the malware.

"When we learned how Drovorub worked, we looked to all of our Linux devices to see if they had the same vulnerabilities. Out of an abundance of caution, we elected to let our users know of the potential issue and offered a mitigation while a fix to the OS was prepared," Andrew Kling, product security officer at Schneider Electric, said via email.

Schneider Electric has advised customers to apply recommended mitigations to reduce the risk of attacks and says it's working on rolling out a fix that should further reduce the risk, but the company told SecurityWeek that it is not aware of any actual vulnerability that could be exploited by the malware so it does not expect to assign a CVE identifier.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/_G4ZY-Rgx1U/schneider-electric-warns-customers-drovorub-linux-malware

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Linux 11 64 2312 1489 67 3932