BackBox.org News
  • BackBox.org
  • Linux
  • Community
  • News
  • Services
  • Sitemap
  • Contact
  • Click to open the search input field Click to open the search input field Search
  • Menu Menu
New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials

New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials

May 8, 2026/in General News

Cybersecurity researchers have disclosed details of a new Linux backdoor named PamDOORa that’s being advertised on the Rehub Russian cybercrime forum for $1,600 by a threat actor called “darkworm.”
The backdoor is designed as a Pluggable Authentication Module (PAM)-based post-exploitation toolkit that enables persistent SSH access by means of a magic password and specific TCP port combination.

The Hacker News – ​Read More

Share this entry
  • Share on Facebook
  • Share on X
  • Share on WhatsApp
  • Share on LinkedIn
  • Share on Vk
  • Share on Reddit
  • Share by Mail
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png 0 0 admin https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png admin2026-05-08 11:06:442026-05-08 11:06:44New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials
Search Search
Copyright © BackBox.org
  • Link to X
  • Link to Facebook
  • Link to LinkedIn
  • Link to Youtube
  • Link to Telegram
Link to: One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity Risk Link to: One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity Risk One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity RiskOne Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity Risk Link to: Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants Link to: Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants
Scroll to top Scroll to top Scroll to top