PurpleFox Adds New Backdoor That Uses WebSockets

This article has been indexed from Trend Micro Simply Security

In September 2021, the Trend Micro Managed XDR (MDR) team looked into suspicious activity related to a PurpleFox operator. Our findings led us to investigate an updated PurpleFox arsenal, which included an added vulnerability (CVE-2021-1732) and optimized rootkit capabilities leveraged in their attacks.

Read the original article: PurpleFox Adds New Backdoor That Uses WebSockets