Linux PamDOORa: New Backdoor Steals SSH Credentials via PAM

Date:

New Linux Backdoor PamDOORa Poses Significant Threat to Security

Cybersecurity experts have recently uncovered a new Linux backdoor named PamDOORa, sold for $900 on a Russian cybercrime forum. Created by the hacker known as “darkworm,” this malware allows unauthorized access to Linux systems by exploiting the Pluggable Authentication Module (PAM) framework.

PamDOORa targets systems using SSH, enabling attackers to harvest credentials from legitimate users and maintain persistent access. Although there are no confirmed real-world attacks yet, the potential for widespread harm is concerning, especially for organizations relying on Linux servers.

To protect against such threats, experts recommend regularly updating systems, monitoring PAM configurations, and employing strong authentication measures.

Risk Level: High
The emergence of PamDOORa highlights the evolving landscape of cyber threats, emphasizing the need for vigilance in safeguarding sensitive systems.

Source: View Original Report

Share post:

spot_imgspot_img

Popular

More like this
Related

Critical PHP Object Injection Vulnerability Found in GiveWP Plugin

A recently discovered vulnerability in the GiveWP plugin poses...

AI Advances Strengthen Cybersecurity: Wordfence Unveils Critical Vulnerability Discovery

Wordfence has revealed significant advancements in its incorporation of...

Critical Unauthenticated Account Takeover Vulnerability Found in TranslatePress Plugin

On August 11, 2026, a significant security vulnerability was...

Hackers Target WordPress Sites in miniOrange Authentication Bypass Attacks

In recent weeks, hackers have escalated their attacks on...