• About Us
  • Contact Us
Sunday, June 21, 2026
  • Login
CXOTECH
No Result
View All Result
  • NEWS
  • CXO TALKS
  • Executive Moves
  • ANALYSIS
  • STRATEGY
  • HOW TO
  • NEWS
  • CXO TALKS
  • Executive Moves
  • ANALYSIS
  • STRATEGY
  • HOW TO
No Result
View All Result
CXOTECH
No Result
View All Result

Groundbreaking Threat: Chinese Hackers Deploy an Innovative Linux Backdoor

Ali Ömer Yıldız by Ali Ömer Yıldız
September 19, 2023
in News
A A
Groundbreaking Threat: Chinese Hackers Deploy an Innovative Linux Backdoor

A new Linux backdoor known as “SprySOCKS” has been discovered and linked to a Chinese APT group.

Security researchers have discovered a previously unknown Linux backdoor employed by a threat actor suspected of being related to the Chinese government. This new backdoor, known as “SprySOCKS,” appears to be based on the Windows backdoor “Trochilus,” which was discovered in 2015. Trochilus has been linked to the Chinese government-linked advanced persistent threat group APT10, also known as Stone Panda and MenuPass.

While Trochilus has been around for a while, its source code has been published on GitHub for over six years. As a result, other threat actors have been able to utilize and change the code for their own goals. Trend Micro analysts identified an encrypted binary file on a server used by a group they were following in June. When this file was decrypted, it resulted in the discovery of SprySOCKS, which combines Trochilus functionality with a new Socket Secure (SOCKS) implementation.

SprySOCKS offers standard backdoor features, such as gathering system information, launching an interactive remote shell, identifying network connections, and establishing a SOCKS proxy for data transit between the compromised system and a command server. The backdoor also contains file operations and manipulation capabilities.

SprySOCKS is linked to a threat actor known as “Earth Lusca,” which has been active since at least 2021 and predominantly targets Asian countries. Earth Lusca uses social engineering techniques to infect targets via watering-hole sites. This organization is financially motivated in addition to espionage, focused on businesses such as gambling and cryptocurrency.

The availability of this new Linux backdoor demonstrates the versatility of threat actors, particularly those linked to nation-states. It also emphasizes the significance of regular threat intelligence and monitoring in detecting developing risks.

To fight against growing dangers like SprySOCKS, security experts advise enterprises to remain cautious and establish effective security measures.

Post Views: 450
Tags: ChinahackerLinuxSprySOCKSTrochilus
Previous Post

iOS 17 is coming! 10 new highlights!

Next Post

Google is finally rolling out the new Fitbit app!

Next Post
Google is finally rolling out the new Fitbit app!

Google is finally rolling out the new Fitbit app!

China’s AI Landscape: The ‘War of a Hundred Models’ Approaches a Turning Point

China's AI Landscape: The 'War of a Hundred Models' Approaches a Turning Point

LATEST NEWS

Nvidia and Amazon Web Services logos representing a major multi-year AI chip and infrastructure agreement
News

Nvidia and Amazon Sign Major AI Infrastructure Chip Deal

March 23, 2026

Nvidia has signed a multi-year agreement with Amazon Web Services (AWS) to supply AI chips and related infrastructure, reinforcing the...

Read moreDetails
Dana Walden announcing Disney’s new leadership structure for streaming, film, television, and games

Disney Sets New Leadership Structure for Expanded Entertainment Segment

March 18, 2026
Google Maps app interface showing immersive navigation and AI-powered trip planning features

Google Maps Gets Its Biggest Navigation Redesign in Over a Decade

March 16, 2026
Interior of an Amazon Robotics innovation hub, highlighting automation strategy and workforce restructuring

Amazon Cuts Jobs in Robotics Division Despite “Strategic Priority” Status

March 5, 2026
Claude AI app displayed in the Apple App Store on a smartphone, illustrating rising consumer adoption amid government scrutiny

Claude Hits No. 1 on Apple’s Top Free Apps List After U.S. Defense Pushback

March 2, 2026

Follow Us On LinkedIn

Categories

  • ANALYSIS
  • CIO Exclusive
  • Company Analysis
  • cxotalks
  • Executive Moves
  • HOW TO
  • News
  • STRATEGY

Tags

5G AI Amazon Android Apple Artificial intelligence chatbot ChatGPT China Chip CIO CXO Cyberattack Cybersecurity Digital Transformation Electric Car Elon Musk ElonMusk EV Facebook GITEX Google Huawei Instagram Intel iOS iPhone Japan META Microsoft NASA Nvidia OpenAI Sam Altman samsung Space SpaceX Tesla Threads TikTok TSMC Twitter Whatsapp Xiaomi YouTube
  • About Us
  • Contact Us

© 2023 CXO MEDYA

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • About Us
  • B2B Lead Generation — Built for Enterprise Tech
  • Contact Us
  • Latest News
  • Privacy Policy
  • Tech Events & Conferences 2024

© 2023 CXO MEDYA