<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Backdoor on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/backdoor/</link>
    <description>Recent content in Backdoor on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 25 Feb 2026 22:40:16 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/backdoor/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Fake Next.js job interview tests backdoor developer&#39;s devices</title>
      <link>https://cluster-site.onrender.com/posts/fake-next.js-job-interview-tests-backdoor-developers-devices/</link>
      <pubDate>Wed, 25 Feb 2026 21:47:12 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/fake-next.js-job-interview-tests-backdoor-developers-devices/</guid>
      <description>• js job interview tests backdoor developer&amp;rsquo;s devices February 25, 2026 04:47 PM 0 A coordinated campaign targeting software developers with job-themed lures is using malicious rep</description>
    </item>
    <item>
      <title>Keenadu Firmware Backdoor Infects Android Tablets via Signed OTA Updates</title>
      <link>https://cluster-site.onrender.com/posts/keenadu-firmware-backdoor-infects-android-tablets-via-signed-ota-updates/</link>
      <pubDate>Tue, 17 Feb 2026 16:41:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/keenadu-firmware-backdoor-infects-android-tablets-via-signed-ota-updates/</guid>
      <description>• Keenadu Firmware Backdoor Infects Android Tablets via Signed OTA Updates A new Android backdoor that&amp;rsquo;s embedded deep into the device firmware can silently harvest data and remote</description>
    </item>
    <item>
      <title>Divide and conquer: how the new Keenadu backdoor exposed links between major Android botnets</title>
      <link>https://cluster-site.onrender.com/posts/divide-and-conquer-how-the-new-keenadu-backdoor-exposed-links-between-major-android-botnets/</link>
      <pubDate>Tue, 17 Feb 2026 09:00:35 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/divide-and-conquer-how-the-new-keenadu-backdoor-exposed-links-between-major-android-botnets/</guid>
      <description>• In April 2025, we reported on a then-new iteration of the Triada backdoor that had compromised the firmware of counterfeit Android devices sold across major marketplaces. • The m</description>
    </item>
    <item>
      <title>KONNI Adopts AI to Generate PowerShell Backdoors</title>
      <link>https://cluster-site.onrender.com/posts/konni-adopts-ai-to-generate-powershell-backdoors/</link>
      <pubDate>Thu, 22 Jan 2026 13:54:08 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/konni-adopts-ai-to-generate-powershell-backdoors/</guid>
      <description>• KONNI leverages AI to auto-generate PowerShell backdoor scripts, streamlining malware development. • AI models produce obfuscated code, enhancing stealth against signature-based</description>
    </item>
    <item>
      <title>The HoneyMyte APT evolves with a kernel-mode rootkit and a ToneShell backdoor</title>
      <link>https://cluster-site.onrender.com/posts/the-honeymyte-apt-evolves-with-a-kernel-mode-rootkit-and-a-toneshell-backdoor/</link>
      <pubDate>Mon, 29 Dec 2025 10:00:35 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/the-honeymyte-apt-evolves-with-a-kernel-mode-rootkit-and-a-toneshell-backdoor/</guid>
      <description>• Overview of the attacks In mid-2025, we identified a malicious driver file on computer systems in Asia. • The driver file is signed with an old, stolen, or leaked digital certifi</description>
    </item>
  </channel>
</rss>
