China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade

Instead of hiding on the laptops and servers defenders watch most closely, a China-nexus group spent close to a decade hidden inside the Linux login system itself.

Sygnia, which tracks the group as Velvet Ant, says it backdoored the PAM and OpenSSH components that decide who is allowed to sign in, planting its access where ordinary cleanup could not reach it. The network it targeted had no

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Guide to data tools landscape for developers

Guide to data tools landscape for developers Source: Hacker News

Show HN: I made a heatmap of 3400 VCs who are open to cold emails

Show HN: I made a heatmap of 3400 VCs who are open to cold emails Source: Hacker News

⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More

⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More Somewhere right now, a security tool is quietly finding bugs faster than any human can fix