Tech

China-linked cyberespionage group PlushDaemon used South Korean VPN service to inject malware

Share
Share

A China-linked cyberespionage group has reportedly exploited a legitimate VPN service to spread malware and spy on victims’ activities. The ESET security research team found the malicious code – alongside the legitimate software – in the Windows installer of IPany, a South Korean VPN provider.

The so-called PlushDaemon APT group is also known to have hijacked legitimate updates of Chinese applications, but this technical-advanced supply-chain attack against a trustworthy Korean VPN firm makes the hacking group “a significant threat to watch for,” said ESET experts.

The SlowStepper backdoor

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Photosynthetic living material uses bacteria to capture CO₂ in two different ways
Tech

Photosynthetic living material uses bacteria to capture CO₂ in two different ways

Picoplanktonics shows large-format objects made of photosynthetic structures. Credit: Valentina Mori/ Biennale...

Trump extends deadline for TikTok sale by 90 days
Tech

Trump extends deadline for TikTok sale by 90 days

TikTok faces a ban in the United States unless it finds a...

No more lost cats and dogs. Use tech to track your pet
Tech

No more lost cats and dogs. Use tech to track your pet

A Chipolo Bluetooth tracker is displayed while a cat rests in the...