PlushDaemon APT targets South Korean VPN with SlowStepper backdoor. Multistage DNS C&C protocol aids espionage.
A China-linked cyberespionage group has reportedly exploited a legitimate VPN service to spread malware and spy on victims' ...
PlushDaemon APT hacked South Korean VPN software with SlowStepper backdoor as part of a 2023 espionage campaign ...
ESET researchers have discovered a supply-chain attack against a VPN provider in South Korea by a newly discovered and ...
South Korean VPN provider IPany was breached in a supply chain attack by the "PlushDaemon" China-aligned hacking group, who ...
ESET researchers provide details on a previously undisclosed China-aligned APT group that we track as PlushDaemon and one of its cyberespionage operations: the supply-chain compromise in 2023 of ...
The APT group has been active since at least 2019 and has previously targeted updates on Chinese applications. The APT was ...
The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking ...
Additionally, PlushDaemon gains initial access via the technique of hijacking legitimate updates of Chinese applications by redirecting traffic to attacker-controlled servers. ESET has also ...