Drooid Logo
Back to today’s briefing

Story perspectives

APT Group Targets South Korean VPN, Data Compromised

1/23/2025

35 6

1 of 2

Story summary
  • In 2023, the notorious China-linked APT group PlushDaemon launched a supply chain attack on South Korean VPN provider IPany, stealthily embedding the SlowStepper backdoor in its installer. This insidious malware compromised user data across South Korea, China, and Japan. Thankfully, ESET researchers uncovered the threat and alerted IPany, leading to the swift removal of the malicious software.
1 / 2