A new sample of the ToneShell backdoor, typically seen in Chinese cyberespionage campaigns, has been delivered through a kernel-mode loader in attacks against government organizations.
Researchers uncovered 27 malicious npm packages used over five months to host phishing pages that steal credentials from ...