SecOpsNews / news

RSS items as GitHub Issues for the discerning engineering leader or security professional
MIT License
30 stars 0 forks source link

[HackerNews] South Korean ERP Vendor's Server Hacked to Spread Xctdoor Malware #30669

Open github-actions[bot] opened 4 days ago

github-actions[bot] commented 4 days ago

An unnamed South Korean enterprise resource planning (ERP) vendor's product update server has been found to be compromised to deliver a Go-based backdoor dubbed Xctdoor. The AhnLab Security Intelligence Center (ASEC), which identified the attack in May 2024, did not attribute it to a known threat actor or group, but noted that the tactics overlap with that of Andariel, a sub-cluster within the

https://thehackernews.com/2024/07/south-korean-erp-vendors-server-hacked.html