PlushDaemon APT targets South Korean VPN with SlowStepper backdoor. Multistage DNS C&C protocol aids espionage.
A China-linked cyberespionage group has reportedly exploited a legitimate VPN service to spread malware and spy on victims' ...
ESET researchers uncover a supply-chain attack against a VPN provider in South Korea by a new China-aligned APT group we have ...
ESET researchers have discovered a supply-chain attack against a VPN provider in South Korea by a newly discovered and ...
PlushDaemon APT hacked South Korean VPN software with SlowStepper backdoor as part of a 2023 espionage campaign ...
South Korean VPN provider IPany was breached in a supply chain attack by the "PlushDaemon" China-aligned hacking group, who ...
The APT group has been active since at least 2019 and has previously targeted updates on Chinese applications. The APT was ...
Additionally, PlushDaemon gains initial access via the technique of hijacking legitimate updates of Chinese applications by redirecting traffic to attacker-controlled servers. ESET has also ...