← Back to feed
malware threats1 source · 6d ago

New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic

A previously undocumented backdoor named ted has been discovered embedded in trojanized HAProxy binaries used to intercept web traffic in South Korean organizations.

AffectedSouth Korea Haproxy AhnLab APT37 ENKI Kaspersky Kimsuky Lazarus Mandiant North Korean state-sponsored actors Rapid7
1 outlet · 1 origin · Balanced
India × 1

No Reader read of this story yet.

Perspectives

The story's competing narratives, side by side — grouped by stance, with every outlet's origin and affiliation visible.

Perspective analysis pending — it generates as coverage from more origins arrives.

What to expect

First-order impacts with their likely second-order effects — direction and horizon per node.

Impact analysis pending.

Sources (1)

New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic — Prism