APT29 targets Active Directory Federation Services with stealthy backdoor
The FoggyWeb post-exploitation backdoor is persistent and steals configuration databases and security token certificates.
Source: arnnet.com.au
Stay updated with breaking news from Windows Data Timezones. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
The FoggyWeb post-exploitation backdoor is persistent and steals configuration databases and security token certificates.
The Nobelium attackers, who are responsible for the SolarWinds intrusion, have been deploying a new backdoor called FoggyWeb in targeted attacks.