Discussion

New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials

Started by The Hacker News · 08 May 2026 13:43 · 21 Views · 0 Replies
Thread Starter #0
Cybersecurity researchers have disclosed details of a new Linux backdoor named PamDOORa that's being advertised on the Rehub Russian cybercrime forum for $1,600 by a threat actor called "darkworm." The backdoor is designed as a Pluggable Authentication Module (PAM)-based post-exploitation toolkit that enables persistent SSH access by means of a magic password and specific TCP port combination.

Okumaya devam et...

You must be logged in to reply.

0 quotes selected