The Load Balancer Kept Working While a Hidden Backdoor Stole Credentials

Two South Korean organisations kept serving traffic through HAProxy while a hidden plugin stole credentials, hijacked sessions and altered pages for selected visitors.

Two South Korean organisations kept serving traffic through HAProxy while a hidden plugin stole credentials, hijacked sessions and altered pages for selected visitors.

CISA confirms active exploitation of Linux kernel CVE-2026-53362. A public IPv6 fragmentation exploit can turn local access into root and, under specific conditions, escape an unprivileged container.

Fourteen functional npm utilities launched a native Linux backdoor when imported, bypassing install-hook defences and giving RedC2 an AI-assisted post-exploitation path.

Dirty Frag turned Linux kernel networking flaws into a reliable path from a low-privilege foothold to root across major distributions.

With a new install as a virtual server, Ubuntu repeatedly displays the error: print_req_error: I/O error, dev fd0, sector 0 The reason is the virtual server does not have a floppy drive. To resolve: # sudo rmmod floppy # echo…