A newly identified hacking campaign is targeting university mail servers by exploiting known but unpatched flaws in Roundcube webmail software. The attackers are using these gaps to quietly steal login credentials and plant a powerful backdoor called VShell deep inside compromised systems. The campaign, tracked under the name UNK_MassTraction, has been active since May 2026 and is aimed squarely at physics and engineering departments at major universities across the United States and Canada. Rather than casting a wide net, the attackers appear to have handpicked targets tied to national security research or astrophysics and particle physics programs. Researchers from Proofpoint first spotted this activity and have been...
Les hele artikkelen hos kilden.
Kommentarer (0)
Ingen kommentarer ennå. Bli den første til å kommentere!