China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade

Instead of hiding on the laptops and servers defenders watch most closely, a China-nexus group spent close to a decade hidden inside the Linux login system itself.

Sygnia, which tracks the group as Velvet Ant, says it backdoored the PAM and OpenSSH components that decide who is allowed to sign in, planting its access where ordinary cleanup could not reach it. The network it targeted had no

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation

FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation A Russian-speaking initial access broker (IAB) driven by financial gain is assessed to be behind a large-scale credential-harvesting operation known as

Berkshire’s $397B Bet Against an Overheated Market

Berkshire’s $397B Bet Against an Overheated Market Source: Hacker News

Godot will no longer accept AI-authored code contributions

Godot will no longer accept AI-authored code contributions Source: Hacker News