GhostRedirector: A New China-Aligned Threat Targeting Windows Servers for SEO Fraud

1 min read
Source: The Hacker News
GhostRedirector: A New China-Aligned Threat Targeting Windows Servers for SEO Fraud
Photo: The Hacker News
TL;DR Summary

Cybersecurity researchers uncovered GhostRedirector, a threat group targeting at least 65 Windows servers mainly in Brazil, Thailand, and Vietnam, using a passive backdoor called Rungan and an IIS module named Gamshen to conduct SEO fraud and maintain long-term access, with suspected links to China.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

4 min

vs 5 min read

Condensed

95%

82544 words

Want the full story? Read the original article

Read on The Hacker News