Fetching latest headlines…
New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials
NORTH AMERICA
πŸ‡ΊπŸ‡Έ United Statesβ€’May 8, 2026

New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials

0 views0 likes0 comments
Originally published byThe Hacker News
Cybersecurity researchers have disclosed details of a new Linux backdoor named PamDOORa that's being advertised on the Rehub Russian cybercrime forum for $1,600 by a threat actor called "darkworm." The backdoor is designed as a Pluggable Authentication Module (PAM)-based post-exploitation toolkit that enables persistent SSH access by means of a magic password and specific TCP port combination.

Comments (0)

Sign in to join the discussion

Be the first to comment!