ESET Showcases Linux Malware Hunting Workshop and KRACK Research at RSA 2020
What Happened — ESET announced that it will lead a main‑stage RSA 2020 workshop titled “Hunting Linux Malware for Fun and Flags,” demonstrating detection of real‑world Linux server malware. The company will also present research on the KRACK vulnerability affecting Amazon Echo devices, highlighting the scale of vulnerable Wi‑Fi hardware.
Why It Matters for Trust & Control Assurance
- Demonstrates the need for continuous monitoring and evidence collection on Linux‑based assets, a core control‑area for audit‑ready environments.
- Highlights Wi‑Fi security gaps that can be addressed through systematic control mapping and regular verification of network‑level safeguards.
Who Is Affected – Cloud‑service providers, SaaS operators, managed‑service firms, and any organization running Linux servers or consumer‑grade Wi‑Fi devices.
Recommended Actions –
- Map Linux endpoint monitoring and Wi‑Fi security controls to your chosen framework (e.g., NIST CSF).
- Collect and retain logs of process activity and network authentication attempts as continuous evidence.
Technical Notes – The workshop will cover ELF binary obfuscation techniques and script‑based malware; the KRACK session references the 2017 Wi‑Fi handshake flaw (CVE‑2017‑13077) that still affects billions of devices. Source: ESET press release