Tag: backdoor
49 articles

Compromised Plugin Update Injects Backdoor into WordPress Sites
A widely used WordPress plugin, Smart Slider 3 Pro, was compromised when hackers hijacked its update system to push a poisoned version containing a backdoor, putting over 800,000 active installations at risk. This alarming breach raises critical questions about trust and security in the mechanisms we rely on to protect our online presence.

RoadK1ll WebSocket Implant Poses Critical Threat to Breached Networks
A new WebSocket implant called RoadK1ll is putting breached networks at risk by allowing attackers to quietly move from a compromised host to other systems, creating a stealthy backdoor for further exploitation. This emerging threat is the latest reminder that cybersecurity vulnerabilities are constantly evolving, demanding vigilant attention from experts and organizations alike.

Trojanized ESET Installers Expose Stunning Harmful Backdoor
Think twice before hitting Install — a May 2025 campaign used trojanized ESET installers, convincing fake vendor pages, and targeted spear‑phishing to slip a stealthy backdoor into Ukrainian victims. This attack is a stark reminder that even trusted updates and familiar brands can be weaponized for espionage.

HttpTroy Exclusive: Dangerous VPN Invoice Backdoor in Korea
HttpTroy exposes a dangerous VPN invoice backdoor in Korea. Find out how attackers are slipping into billing systems and what you can do to stay protected.

CAPI Backdoor Exclusive Risky Threat to Russian Firms
Think that invoice is harmless? Seqrite Labs found phishing ZIPs delivering a new .NET CAPI Backdoor that uses Windows crypto to hide C2 activity and is targeting Russian automotive and e‑commerce firms—so double‑check attachments and tighten defenses.

ArcGIS Server Stunning Risk: Backdoor Exposed
Think your network’s safe? Researchers say a China-linked group quietly turned an ArcGIS Server into a persistent backdoor for over a year, using it to move laterally and stash tools while going largely unnoticed. It’s a wake-up call to inventory exposed services, patch urgently, and add monitoring so hidden footholds don’t become strategic liabilities.

BRICKSTORM backdoor: Stunning Dangerous Threat Exposed
BRICKSTORM is a stealthy backdoor tied to a Chinese‑aligned group that quietly harvests telemetry to help build and refine zero‑day exploits—what looks like a low‑impact intrusion today could be tomorrow’s weapon. Security teams should hunt, patch, and harden now before collected data is turned into lasting capability.

SnakeDisk worm: Stunning Risky Thai-Targeted Threat
A China-aligned group called Mustang Panda has paired an updated TONESHELL backdoor with a USB worm named SnakeDisk that only activates for Thailand-based devices to drop a persistent Yokai backdoor — a surgical, geographically targeted campaign that ups the stakes for anyone who plugs in removable media. Stay cautious with USB drives and tighten removable-media policies: this is a reminder that one careless plug can invite long-term access.

modular macOS backdoor: Stunning Dangerous Threat Revealed
What if your Mac had been quietly harboring a stealthy backdoor for years? Researchers say ChillyHell—a modular macOS implant—evaded Apple’s protections for up to four years, showing how dormancy and clever design let attackers hide in plain sight.

crypto phishing Shocking Supply-Chain Nightmare
One phishing click that reset a maintainer’s 2FA let attackers slip backdoors into at least 18 popular npm packages — including debug and chalk — turning trusted libraries into supply-chain landmines. It’s a wake-up call: human error can ripple through the entire ecosystem, so stronger authentication, multi-person publishing, and tighter dependency hygiene can’t wait.

GhostRedirector: Exclusive Dangerous IIS Backdoor Revealed
Researchers uncovered GhostRedirector, a previously undocumented campaign that’s hit at least 65 Windows web servers in Brazil, Thailand and Vietnam by installing a C++ backdoor called Rungan plus a native IIS module to stealthily intercept or redirect traffic. If you run IIS, now’s the time to audit loaded modules, hunt for Rungan indicators, and lock down your servers before attackers turn your site into a covert gateway.

VBA-based backdoor: Stunning Risky Outlook Threat
Think your inbox is safe? Researchers warn APT28 has deployed a VBA-based Outlook backdoor called NotDoor that hides in macros to harvest emails and stay persistent, so it’s time to tighten macro policies, add telemetry, and treat your mail client as part of the attack surface.

Apple backdoor: Stunning UK Reversal — Risky Plan Dies
In a surprising win for privacy, the U.K. appears to have backed away from forcing Apple to build a backdoor—raising fresh questions about how to balance law enforcement needs with global security risks. Driven by diplomatic pushback, expert warnings and public outcry, the decision gives encryption defenders a reprieve while pushing governments to find smarter, privacy-preserving alternatives.

iPhone encryption: Stunning U.S. Block and Risky Fallout
Fresh reporting says the U.S. quietly pressured Britain to drop a bid to force Apple to add an iPhone backdoor. The move reignites the debate over who holds the keys, who gets to set tech rules among allies, and what that means for our security and privacy.

SonicWall VPNs: Must-Have Fix for Risky Backdoors
If you’re still running SonicWall VPNs that are end-of-life, beware: attackers are planting stealthy backdoors and rootkits—even on patched devices—turning trusted remote-access gear into long-term footholds. Audit your appliances now and prioritize replacing, isolating, or hardening any unsupported units before a quiet compromise becomes a costly breach.

UNC6148 Backdoors Patched in SonicWall SMA 100 Series Devices
Think your patched SonicWall SMA 100 device is safe? Think again—cybercriminals are exploiting its outdated status to sneak in persistent backdoors, proving that end-of-life gear can be your network’s biggest weak spot.

MacOS Infostealer AMOS Gains Persistent Backdoor Access
MacOS users face a new threat as the AMOS infostealer evolves into a stealthy backdoor, allowing attackers to stay hidden and in control long after the initial infection. Stay informed to protect your data from this persistent danger!

New macOS Infostealer Introduces Backdoor for Ongoing Attacks
New macOS infostealer malware introduces a backdoor, enabling ongoing attacks and compromising user data. Stay vigilant against emerging threats.

Thousands of ASUS Routers Hijacked in Stealthy Backdoor Campaign
Thousands of ASUS routers hijacked via a stealthy backdoor campaign expose hidden vulnerabilities, triggering urgent cybersecurity alerts.

Florida Backdoor Bill Fails
Florida’s backdoor bill fails as lawmakers reject covert policy changes, reinforcing transparency and accountability in state governance.

Malicious WordPress Plugin Grants Remote Administrative Access to Cyber Attackers
Malicious WordPress plugin lets attackers gain remote admin control, exposing sites to unauthorized access, data breaches, and exploitation.

Deceptive WordPress Plugin Poses as a Security Tool While Deploying a Backdoor
Deceptive WordPress plugin masquerades as a security tool, secretly installing a backdoor that compromises vulnerable sites.

Fake Patch Phishing Campaign Hits WooCommerce, Injecting Hidden Backdoors
Fake Patch phishing campaign targets WooCommerce sites with fraudulent updates, injecting hidden backdoors to compromise security.

China-Backed Hackers Utilize BRICKSTORM Backdoor to Target European Enterprises
China-backed hackers exploit the BRICKSTORM backdoor to infiltrate European enterprises, posing significant cybersecurity threats.