Gruppo legato alla Cina impianta backdoor kernel nel backbone telecom

Rapid7 segnala che un attore statale collegato alla Cina ha impiantato codice kernel e backdoor passive nel backbone delle telecom globali. L'accesso fornisce persistenza stealth a lungo termine per spionaggio contro provider telecom, reti governative e altre infrastrutture critiche. Strumenti osservati includono BPFdoor, CrossC2, TinyShell, credential harvesters e SSH brute-forcers.

Part of the PlainSec briefing for 2026-03-27

Every edition of this story: Gruppo legato alla Cina impianta backdoor kernel nel backbone telecom

Sources