Tech

China-linked cyberespionage group PlushDaemon used South Korean VPN service to inject malware

Share
Share

A China-linked cyberespionage group has reportedly exploited a legitimate VPN service to spread malware and spy on victims’ activities. The ESET security research team found the malicious code – alongside the legitimate software – in the Windows installer of IPany, a South Korean VPN provider.

The so-called PlushDaemon APT group is also known to have hijacked legitimate updates of Chinese applications, but this technical-advanced supply-chain attack against a trustworthy Korean VPN firm makes the hacking group “a significant threat to watch for,” said ESET experts.

The SlowStepper backdoor

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Intel’s Core Ultra 9 and RTX 5060 Ti in one box? Lenovo’s wild mini PC pulls it off
Tech

Intel’s Core Ultra 9 and RTX 5060 Ti in one box? Lenovo’s wild mini PC pulls it off

Lenovo ThinkCentre neo Ultra 2025 squeezes high-end AI hardware into a tiny,...

10 Lego cars just raced the F1 Miami Grand Prix track – here’s how they were built
Tech

10 Lego cars just raced the F1 Miami Grand Prix track – here’s how they were built

10 Lego cars just drove around Miami’s F1 track They’re each built...

AI is booming, but most CFOs say they still can’t make money from it
Tech

AI is booming, but most CFOs say they still can’t make money from it

Most CFOs say they still can’t make money from AI yet Traditional...