Tag: QiAnXin XLab

Researchers Warn of MystRodX Backdoor Using DNS and ICMP Triggers for Stealthy Control
News

Researchers Warn of MystRodX Backdoor Using DNS and ICMP Triggers for Stealthy Control

Researchers in cybersecurity have revealed MystRodX, a novel, covert backdoor with multiple functionalities for obtaining private information from infected systems. According to a report released last week by QiAnXin XLab, "MystRodX is a typical backdoor implemented in C++, supporting features like file management, port forwarding, reverse shell, and socket management." MystRodX is unique among backdoors in that it is both flexible and stealthy. Palo Alto Networks Unit 42 originally reported MystRodX, also known as ChronosRAT, last month in relation to a threat activity cluster named CL-STA-0969, which it claimed had similarities to a cyber espionage gang with a China connection named Liminal Panda. While the malware's versatility enables it to dynamically enable different functi...
New Glutton Malware Exploits Popular PHP Frameworks Like Laravel and ThinkPHP
Business

New Glutton Malware Exploits Popular PHP Frameworks Like Laravel and ThinkPHP

Researchers studying cybersecurity have found a new PHP-based backdoor known as Glutton, which has been used in cyberattacks on South Africa, China, the US, Cambodia, and Pakistan. After identifying the harmful activities in late April 2024, QiAnXin XLab moderately confidently linked the hitherto unidentified malware to the well-known Chinese nation-state outfit Winnti (also known as APT41). It's interesting that our research showed that Glutton's developers specifically targeted cybercrime market systems, the company stated. They sought to use poisoning operations to turn cybercriminals read more about New Glutton Malware Exploits Popular PHP Frameworks Like Laravel and ThinkPHP. Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our...