Iran-Linked Hackers Abuse Legitimate Developer Tool to Hide Dindoor Backdoor

Iran-linked operators are using a trusted developer tool to conceal a backdoor called Dindoor inside Windows environments. The malware uses the Deno JavaScript and TypeScript runtime to execute encoded code, helping its activity blend into legitimate software use. Dindoor has appeared as a later-stage payload in spearphishing intrusions. Researchers observed it at U.S. software and […]

This article has been indexed from Cyber Security News

Read the original article: