China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth

Cybersecurity researchers have flagged two previously undocumented Windows variants of what was believed to be a Linux-only backdoor called SprySOCKS.

“The Windows variants discovered are internally marked as WIN_DRV and WIN_PLUS,” ESET said in a report shared with The Hacker News. “Both come with a hard-coded C&C [command-and-control] configuration and support communication over TCP, UDP,

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

How to Build an AI Software Factory: Agents That Open, Review, and Merge PRs

How to Build an AI Software Factory: Agents That Open, Review, and Merge PRs Source: Hacker News

Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found

Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found Google and Microsoft have pulled ModHeader, a popular header-editing extension with roughly 1.6 million installs across Chrome

xAI Ignores Laws and Profits: Rules for Thee, Not for Me

xAI Ignores Laws and Profits: Rules for Thee, Not for Me Source: Hacker News