Výsledky hledání

sektor: média× téma: špionáž× v celém archivu zrušit filtry

6 karet z 6 položek CZ · EN/orig

1

HEAVYGRAM: A Telegram-based Surveillance Backdoor Linked to Handala Hack

Group-IB Threat Intelligence analyzes HEAVYGRAM, a Telegram-based Windows backdoor attributed with moderate confidence to the Iran-linked threat actor Handala Hack. Active since Fall 2023, it has been used to surveil Iranian dissidents, journalists and government opponents, enabling remote command execution, data exfiltration, and persistence over Telegram command-and-control.

média SG

tg: rozbor tp: malware tp: soukromí tp: špionáž

· Group-IB · HEAVYGRAM: A Telegram-based Surveillance Backdoor Linked to Handala Hack

1

3

1

DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors

OverviewA new Linux toolkit, identified by Rapid7 Labs, has been targeting organizations across South Korea’s automotive and media industries with minimal detection. The campaign made use of a HAProxy instance named “ted backdoor”, alongside trojanized versions of crond, agetty, atd, sshd, and polkitd. This previously undocumented framework enabled threat actors to execute remote commands on compromised servers, inject malicious scripts into web traffic, perform credential harvesting, and…

HAProxy média výroba a průmysl US

tg: varování tg: rozbor tp: malware tp: špionáž

· Rapid7 · DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors