New Backdoor “Plague” Discovered on Linux-Hides in PAM to Bypass Authentication

280/68 Monday, August 4, 2025 Researchers at Nextron Systems have discovered a new malware strain called “Plague,” which embeds itself as a PAM (Pluggable Authentication Module) on Linux systems. The malware exploits the PAM framework to bypass standard authentication processes, allowing attackers to maintain persistent SSH access without needing to provide a password. Plague also […]

ThaiCERT

August 4, 2025

Akira Ransomware Group Exploits Zero-Day Vulnerability in SonicWall VPN Devices

279/68 Monday, August 4, 2025 Cybersecurity researchers from Arctic Wolf Labs have revealed that the Akira ransomware group has been actively targeting SonicWall SSL VPN systems since mid-July 2025. The attackers are using the VPN service as an entry point into victims’ networks. Notably, some of the affected devices had already been updated with the […]

ThaiCERT

August 4, 2025