The Linux-based ELF backdoor is targeting cloud workloads across providers, using SMTP-based C2 and typosquatted Alibaba ...
A single unauthenticated connection gives attackers a full shell; credential theft observed in under three minutes on honeypot servers.