National Cyber Warfare Foundation (NCWF)

Malicious Go Module Poses as SSH Brute-Force Tool, Steals Credentials via Telegram Bot


0 user ratings
2025-08-24 13:41:12
milo
Blue Team (CND)
Cybersecurity researchers have discovered a malicious Go module that presents itself as a brute-force tool for SSH but actually contains functionality to discreetly exfiltrate credentials to its creator.
"On the first successful login, the package sends the target IP address, username, and password to a hard-coded Telegram bot controlled by the threat actor," Socket researcher Kirill Boychenko



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/08/malicious-go-module-poses-as-ssh-brute.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.