As cited
Copy frozen at (site build).
threat intel
North Korean Hackers Deploy New Linux Espionage Toolkit
North Korean threat actors have deployed a Linux-based espionage toolkit that embeds a backdoor in HAProxy, targeting automotive and media organizations in South Korea. The toolkit is designed for persistent surveillance and remote access to victim systems.
Why it matters: South Korean automotive and media organizations face immediate risk of compromise and data exfiltration; practitioners managing HAProxy instances should audit for unauthorized modifications and implement network monitoring for anomalous behavior.
- Source published
- First seen by Cybersecurity Tracker