Skip to content

Threat Actors Weaponizing Nezha Monitoring Tool as Remote Access Trojan

Cybersecuritynews •Tushar Subhra Dutta • December 23, 2025

Researchers at Ontinue’s Cyber Defense Center have uncovered a significant threat as attackers exploit Nezha, a legitimate open-source server monitoring tool, for post-exploitation access. The discovery reveals how sophisticated threat actors repurpose benign software to gain complete control over compromised systems while evading traditional security detection mechanisms. Nezha, originally developed for the Chinese IT community, […]

Extracted Entities

Attack Types (1)

Malware (1)