New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH CredentialsThe Hacker News·May 9, 06:23 UTC · May 9, 2026Malware42
Remediant PAM+ strategy protects against credential compromise and lateral movement attacksHelp Net Security·Aug 23, 00:00 UTC · Aug 23, 2022Malware30
New Linux backdoor Plague bypasses auth via malicious PAM moduleSecurity Affairs·Aug 2, 23:22 UTC · Aug 2, 2025Malware42
Cryptominer Abuses Linux PAM to Hide From SOC AnalystsInfosecurity Magazine·Jul 30, 14:30 UTC · Jul 30, 2026Malware30
PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login PasswordsThe Hacker News·Jul 3, 10:17 UTC · Jul 3, 2026Malware30
New ‘Plague’ PAM Backdoor Exposes Critical Linux Systems to Silent Credential TheftThe Hacker News·Aug 5, 06:52 UTC · Aug 5, 2025Malware55
Quasar Linux RAT (QLNX): A Fileless Linux Implant Built for Stealth and PersistenceSecurity Affairs·May 9, 13:11 UTC · May 9, 2026Malware42
China-linked spies backdoored authentication stack to stay hidden for yearsHelp Net Security·Jun 15, 00:00 UTC · Jun 15, 2026Malware55
China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a DecadeThe Hacker News·Jun 12, 18:17 UTC · Jun 12, 2026MalwareCVE-2024-2039947
Newly discovered PamStealer isn't your typical macOS malwareArs Technica · Security·Jul 2, 19:38 UTC · Jul 2, 2026Malware30
ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New StoriesThe Hacker News·May 24, 08:14 UTC · May 24, 2026MalwareCVE-2026-4579360
⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreThe Hacker News·May 11, 12:36 UTC · May 11, 2026Malware in the wildCVE-2026-6973CVE-2026-030060
Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseThe Hacker News·May 8, 11:00 UTC · May 8, 2026Malware42
Why NHIs Are Security's Most Dangerous Blind SpotThe Hacker News·Apr 25, 10:30 UTC · Apr 25, 2025Malware55
Hydden raises $4.4 million to improve identity securityHelp Net Security·Sep 18, 00:00 UTC · Sep 18, 2024Malware55
42% Of Security Leaders Said The Pandemic Has Changed Their Cybersecurity PrioritiesHelp Net Security·Dec 15, 00:00 UTC · Dec 15, 2020Malware30
How Can Retailers Cyber-Prepare for the Most Vulnerable Time of the Year?The Hacker News·Dec 8, 14:42 UTC · Dec 8, 2025Malware30
⚡ Weekly Recap: WhatsApp 0-Day, Docker Bug, Salesforce Breach, Fake CAPTCHAs, Spyware App & MoreThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Malware in the wildCVE-2025-55177CVE-2025-43300CVE-2025-907460
CL-STA-0969 Installs Covert Malware in Telecom Networks During 10The Hacker News·Aug 4, 13:40 UTC · Aug 4, 2025MalwareCVE-2016-5195CVE-2021-4034CVE-2021-315660
DOGE to Fired CISA Staff: Email Us Your Personal DataKrebs on Security·Mar 20, 18:53 UTC · Mar 20, 2025Malware30
StripedFly: Perennially flying under the radarKaspersky Securelist·Oct 26, 04:00 UTC · Oct 26, 2023Malware30
Teleport Identity Governance and Security reduces attack surface areaHelp Net Security·Oct 25, 00:00 UTC · Oct 25, 2023Malware55
OrBit, a new sophisticated Linux malware still undetectedSecurity Affairs·Jul 7, 09:34 UTC · Jul 7, 2022Malware42
Researchers Warn of New OrBit Linux Malware That Hijacks Execution FlowThe Hacker News·Jul 7, 06:50 UTC · Jul 7, 2022Malware42
China-linked LightBasin group accessed calling records from telcosSecurity Affairs·Oct 20, 12:39 UTC · Oct 20, 2021Malware42
LightBasin Operation Compromises 13 Global Telcos in Two YearsInfosecurity Magazine·Oct 20, 09:12 UTC · Oct 20, 2021Malware42
Old and new OpenSSH backdoors threaten Linux serversHelp Net Security·Dec 9, 18:30 UTC · Dec 9, 2018Malware42