Tech

China-linked cyberespionage group PlushDaemon used South Korean VPN service to inject malware

Share
Share

A China-linked cyberespionage group has reportedly exploited a legitimate VPN service to spread malware and spy on victims’ activities. The ESET security research team found the malicious code – alongside the legitimate software – in the Windows installer of IPany, a South Korean VPN provider.

The so-called PlushDaemon APT group is also known to have hijacked legitimate updates of Chinese applications, but this technical-advanced supply-chain attack against a trustworthy Korean VPN firm makes the hacking group “a significant threat to watch for,” said ESET experts.

The SlowStepper backdoor

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
10 Lego cars just raced the F1 Miami Grand Prix track – here’s how they were built
Tech

10 Lego cars just raced the F1 Miami Grand Prix track – here’s how they were built

10 Lego cars just drove around Miami’s F1 track They’re each built...

AI is booming, but most CFOs say they still can’t make money from it
Tech

AI is booming, but most CFOs say they still can’t make money from it

Most CFOs say they still can’t make money from AI yet Traditional...

Lenovo#s ThinkPad P16s Gen 4 flexes AMD muscle but still trails HP’s AI workstation monster
Tech

Lenovo#s ThinkPad P16s Gen 4 flexes AMD muscle but still trails HP’s AI workstation monster

Lenovo ThinkPad P16s Gen 4 offers powerful AMD performance for professionals It...