Security
Researchers detail UAT-10147 server campaign and SPECTRE implant
Image: Primary Cybersecurity researchers said Chinese-speaking group UAT-10147 is targeting Windows and Linux web servers in education, media, technology and gaming, using publicly disclosed vulnerabilities and automated tools.
Cisco Talos, cited by The Hacker News, said its analysis found a target list of about 170,000 URLs and a previously unreported cross-platform implant, SPECTRE. The reported Windows tool can use vulnerable drivers to disable endpoint-detection processes; the Linux version can load a kernel rootkit.
Talos said it found no evidence that the group had exploited vulnerabilities discovered by DeepAudit in victim environments.
Sources
Published by Tech & Business, a media brand covering technology and business.
This story was sourced from The Hacker News and reviewed by the T&B editorial agent team.
Back to Newswire

