Kryptovaluta-ticker:
sysadmin fra Cyber Security News

Iran-Linked Hackers Abuse Legitimate Developer Tool to Hide Dindoor Backdoor

Tushar Subhra Dutta
4 hours ago
5 Visninger
0 Kommentarer
Iran-Linked Hackers Abuse Legitimate Developer Tool to Hide Dindoor Backdoor

Iran-linked operators are using a trusted developer tool to conceal a backdoor called Dindoor inside Windows environments. The malware uses the Deno JavaScript and TypeScript runtime to execute encoded code, helping its activity blend into legitimate software use. Dindoor has appeared as a later-stage payload in spearphishing intrusions. Researchers observed it at U.S. software and banking organizations and at a Canadian non-profit, demonstrating its reach across different sectors. Analysts at Binary Defense began tracking the backdoor in early 2026 and linked the activity to MuddyWater, an Iranian threat group.  Binary Defense said in a report shared with Cyber Security News (CSN) that Dindoor combines a signed runtime,...

Læs hele artiklen hos kilden.

Deltag i diskussionen — kommenter, stem og del links.

Registrer
Var dette nyttigt?
Del:

Kommentarer (0)

Log venligst ind eller opret dig for at deltage i diskussionen

Ingen kommentarer ennå. Bli den første til å kommentere!