news.mlab.sh
Back to the feed
malware

Malicious Linux Implants Mimic Asian Mail Security Products

Medium
Image: Dark Reading
Summary

Rapid7 researchers have uncovered a sophisticated campaign involving Linux backdoors that mimic legitimate Asian mail security appliances, primarily targeting telecom companies and government organizations in South Korea and Taiwan. The campaign utilizes techniques like mimicking legitimate software, using SMTP port 25 for C2, and deploying popped edge devices as operational relay points.

Read the full article at Dark Reading

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.