Security News

Rogue npm Packages Mimic Telegram Bot API to Plant SSH Backdoors on Linux Systems
2025-04-19 15:11

Cybersecurity researchers have uncovered three malicious packages in the npm registry that masquerade as a popular Telegram bot library but harbor SSH backdoors and data exfiltration capabilities....

Over 16,000 Fortinet devices compromised with symlink backdoor
2025-04-16 20:47

Over 16,000 internet-exposed Fortinet devices have been detected as compromised with a new symlink backdoor that allows read-only access to sensitive files on previously compromised devices. [...]

Chinese snoops use stealth RAT to backdoor US orgs – still active last week
2025-04-15 14:00

Let the espionage and access resale campaigns begin (again) A cyberspy crew or individual with ties to China's Ministry of State Security has infected global organizations with a remote access...

UK's attempt to keep details of Apple 'backdoor' case secret… denied
2025-04-07 13:01

Last month's secret hearing comes to light Details of Apple's appeal against the UK's so-called "backdoor order" will now play out in public after the Home Office failed in its bid to keep them...

EU: These are scary times – let's backdoor encryption!
2025-04-03 11:17

ProtectEU plan wants to have its cake and eat it too The EU has issued its plans to keep the continent's denizens secure and among the pages of bureaucratese are a few worrying sections that...

Cisco warns of CSLU backdoor admin account used in attacks
2025-04-02 13:19

Cisco warns admins to patch a critical Cisco Smart Licensing Utility (CSLU) vulnerability, which exposes a built-in backdoor admin account now used in attacks. [...]

FIN7 Deploys Anubis Backdoor to Hijack Windows Systems via Compromised SharePoint Sites
2025-04-02 06:52

The financially motivated threat actor known as FIN7 has been linked to a Python-based backdoor called Anubis (not to be confused with an Android banking trojan of the same name) that can grant...

New SparrowDoor Backdoor Variants Found in Attacks on U.S. and Mexican Organizations
2025-03-26 16:59

The Chinese threat actor known as FamousSparrow has been linked to a cyber attack targeting a trade group in the United States and a research institute in Mexico to deliver its flagship backdoor...

New npm attack poisons local packages with backdoors
2025-03-26 12:00

Two malicious packages were discovered on npm (Node package manager) that covertly patch legitimate, locally installed packages to inject a persistent reverse shell backdoor. [...]

More Countries are Demanding Backdoors to Encrypted Apps
2025-03-24 10:38

Last month, I wrote about the UK forcing Apple to break its Advanced Data Protection encryption in iCloud. More recently, both Sweden and France are contemplating mandating backdoors. Both...