#6
The Hacker News
general
June 08, 2026 at 10:27 UTC
VerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux Appliances
By [email protected] (The Hacker News)
AI Summary
Volexity attributed a new espionage campaign to VerdantBamboo (overlapping with Microsoft's Clay Typhoon) deploying a previously undocumented BSD variant of the BRICKSTORM backdoor alongside two new malware families, PLENET (aka GRIMBOLT) and AGENTPSD, targeting Linux network appliances. This China-nexus threat actor's expansion to BSD/Linux platforms broadens the attack surface beyond Windows environments typically monitored by enterprise defenders. Security teams protecting Linux-based network infrastructure should review Volexity's indicators.
Relevance score: 84.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →