Malware
PoisonedRefresh
- First Reported
- Sep 7, 2026
- Latest Reported
- Sep 7, 2026
Reported Context (1)
- became aware that researchers from ESET had conducted analysis of this malware, which they dubbed ‘PoisonedRefresh.’ Our analysis independently observed overlapping behavior and contributes further detail. Sophos dissects Linux rootkit that hides PHP web shells in BIG-IP APM environments
CVE (1)
Malware (1)
MITRE ATT&CK (5)
Vendors (2)
Products (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.