SSHStalker Botnet Uses IRC C2 to Control Linux Systems via Legacy Kernel Exploits

Cybersecurity researchers have disclosed details of a new botnet operation called SSHStalker that relies on the Internet Relay Chat (IRC) communication protocol for command-and-control (C2) purposes. "The toolset blends stealth helpers with legacy-era Linux exploitation: Alongside log cleaners (utmp/wtmp/lastlog tampering) and rootkit-class artifacts, the actor keeps a large back-catalog of


Feb 12, 2026 - 03:13
 0  2
SSHStalker Botnet Uses IRC C2 to Control Linux Systems via Legacy Kernel Exploits
Cybersecurity researchers have disclosed details of a new botnet operation called SSHStalker that relies on the Internet Relay Chat (IRC) communication protocol for command-and-control (C2) purposes. "The toolset blends stealth helpers with legacy-era Linux exploitation: Alongside log cleaners (utmp/wtmp/lastlog tampering) and rootkit-class artifacts, the actor keeps a large back-catalog of

What's Your Reaction?

like

dislike

love

funny

angry

sad

wow

mayankrajkumarofficial Mayank Rajkumar Sambare, from Nagpur, Maharashtra is a Young Cyber Security Expert, Entrepreneur, Public Speaker, and a Brilliant Author. He Owns a Cyber Security Company Named CODELANCER CYBER SECURITY AND FORENSICS which is located in Nagpur, Maharashtra also the Founder of the Cyber Volunteer Organisation India.