Malware Threats Emerge: Gootloader and New Backdoors Targeting Defense Sector
Article Content
Browse articles
Recent malware developments include the resurgence of Gootloader, which has been linked to various cyberattacks. Notably, a novel backdoor named SesameOp utilizes OpenAI Assistants API for command and control, while weaponized military documents have introduced an advanced SSH-Tor backdoor targeting the defense sector. These threats highlight ongoing vulnerabilities in software ecosystems and the potential for significant impacts on affected organizations.
Ask AI about this cluster
Answers cite the sources they use
Updated 213d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track Glassworm in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
GlassWorm Campaign Targets Developers with Malicious VS Code Extensions A cluster of malicious Visual Studio Code extensions linked to the GlassWorm threat actor was uncovered, affecting thousands of developers. These extensions, disguised as color themes, contain obfuscated JavaScript loaders that can retrieve secondary payloads. The Socket Threat Research team identified two confirmed…
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…