CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 3516

As cited

Copy frozen at (site build).

threat intel

Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts

South Korean authorities and security researchers identified a state-sponsored campaign that compromised domestic websites to exploit AnySign4PC, a financial security software, and install SIGNBT or COPPERHEDGE backdoors on vulnerable systems without user interaction. The attackers leveraged trusted local sites as distribution vectors to reach targeted victims.

Why it matters: Financial services users and security teams in South Korea are at direct risk from this supply-chain attack vector; patching AnySign4PC and reviewing access to compromised websites should be immediate priorities.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary