Researchers at Palo Alto Network’s Unit 42 said they discovered a tool — named SockDetour — that serves as a backup backdoor in case the primary one is removed. The researchers said it stood out and is hard to detect because it operations filelessly and socketlessly on compromised Windows servers.
Read full article on ZDNet