FontOnLake

Malware type
rat, rootkit, credential-stealer
Family
Malware family
Profile updated
2026-07-07 14:25:01

Targeted industries: technology-and-telecommunications government-and-public-sector

Context

This family utilizes custom modules allowing for remote access, credential harvesting (e.g. by modifying sshd) and proxy usage. It comes with a rootkit as well.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Fontonlake (report)
  • ESET — Fontonlake Previously Unknown Malware Family Targeting Linux (report)

External references