As cited
Copy frozen at (site build).
threat intel
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
A China-linked threat actor has redeployed Daxin, a kernel-mode rootkit inactive for over four years, in a Taiwan manufacturing company alongside a new backdoor named Stupig. Daxin was previously documented by Symantec in March 2022 as a tool used in targeted attacks.
Why it matters: Manufacturers in Taiwan and other sectors face renewed risk from sophisticated state-sponsored malware; security teams should assess whether Daxin or Stupig exist in their environments and review kernel-mode persistence mechanisms.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
A China-linked threat actor has redeployed Daxin, a kernel-mode rootkit inactive for over four years, in a Taiwan manufacturing company alongside a new backdoor named Stupig. Daxin was previously documented by Symantec in March 2022 as a tool used in targeted attacks.
Why it matters: Manufacturers in Taiwan and other sectors face renewed risk from sophisticated state-sponsored malware; security teams should assess whether Daxin or Stupig exist in their environments and review kernel-mode persistence mechanisms.
- Source published
- First seen by Cybersecurity Tracker