"CISA Discovers Submarine Malware on Compromised Barracuda ESG Appliances"

1 min read
Source: BleepingComputer
"CISA Discovers Submarine Malware on Compromised Barracuda ESG Appliances"
Photo: BleepingComputer
TL;DR Summary

The Cybersecurity and Infrastructure Security Agency (CISA) has discovered a new malware strain called Submarine on compromised Barracuda ESG (Email Security Gateway) appliances used by federal agencies. The malware, deployed by a suspected pro-China hacker group, was used for detection evasion, persistence, and data harvesting. This comes after a previous attack where a zero-day bug was exploited to backdoor the appliances. Barracuda has offered replacement devices to affected customers and advised thorough review of networks for potential compromise. CISA warns that the Submarine malware poses a severe threat for lateral movement and urges reporting of suspicious activities.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

1 min

vs 2 min read

Condensed

75%

38397 words

Want the full story? Read the original article

Read on BleepingComputer