Security news aggregator

Latest coverage for Backdoor

Stay updated on the latest backdoor threats in cybersecurity. Discover news, analysis, and insights on covert access vulnerabilities.

17 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Backdoor is a term in information security that denotes a method of bypassing normal authentication or security controls to access a computer system, network, or software application. These might be intentionally created by software developers for legitimate reasons, such as maintenance or troubleshooting, but they can also be inserted maliciously by attackers to gain unauthorized access to systems or data.

Backdoors can take many forms, including secretive combinations of keystrokes, unrecognized user accounts, hidden processes, or unnoticed network services. In the realm of cybersecurity, the discovery, monitoring, and closing of backdoors are critical tasks, as their presence often signifies a severe vulnerability that could be exploited by hackers, potentially leading to data breaches, system hijackings, or other malicious activities.

Volume over time

Weekly headline count for the current query.

Showing 17 most recent headlines Filtered view

Unknown attackers have deployed a newly discovered backdoor dubbed Msupedge on a university's Windows systems in Taiwan, likely by exploiting a recently patched PHP remote code execution vulnerability (CVE-2024-4577). [...]

Suspected state-sponsored hackers have been exploiting a zero-day vulnerability in Palo Alto Networks firewalls tracked as CVE-2024-3400 since March 26, using the compromised devices to breach internal networks, steal data and credentials. [...]

Microsoft says that the North Korean Lazarus and Andariel hacking groups are exploiting the CVE-2023-42793 flaw in TeamCity servers to deploy backdoor malware, likely to conduct software supply chain attacks. [...]

Threat actors are targeting Internet-exposed Fortinet appliances with exploits targeting CVE-2022-39952, an unauthenticated file path manipulation vulnerability in the FortiNAC webserver that can be abused for remote command execution. [...]