Security Feed
  1. Archives

Dec 29 2025 Chinese state hackers use rootkit to hide ToneShell malware activity

Source

A new sample of the ToneShell backdoor, typically seen in Chinese cyberespionage campaigns, has been delivered through a kernel-mode loader in attacks against government organizations. [...]

Posted by Bill Toulas on Mon 29 December 2025 in BleepingComputer.

Tags: Security.

Categories

  1. Ars Technica
  2. AWS Security
  3. BleepingComputer
  4. Brian Krebs
  5. Bruce Schneier
  6. GCP Security
  7. Google Project Zero
  8. The Daily Swig
  9. The Guardian
  10. The Register
  11. Threatpost

Tag cloud

  • Security
  • Uncategorized
  • Security, Identity, & Compliance
  • Security Blog
  • Biz & IT
  • Microsoft
  • Security & Identity
  • AI
  • google
  • CryptoCurrency
  • Announcements
  • Foundational (100)
  • A Little Sunshine
  • Legal
  • Artificial Intelligence
  • privacy
  • Mobile
  • Apple
  • squid
  • Intermediate (200)
  • Advanced (300)
  • Technical How-to
  • hacking
  • The Coming Storm
  • Best Practices

Security Feed. Powered by Pelican and m.css. Code is available on GitLab.