#BambooToken #malware controls #Windows and #Linux systems via #MQTT

BambooToken malware has been active since early 2023, using MQTT for covert command and control to hit Windows and Linux systems across Asia and South America, likely via DLL sideloading. #MQTT #China #BambooToken
BambooToken malware has been active since 2023, using MQTT for command and control across Windows and Linux. Black Lotus Labs linked campaigns to enterprise servers, mobile app infrastructure, and legal and financial services. #MQTT #BambooToken
PRC-aligned BambooToken hijacks banking PKI software and talks to its masters over MQTT, not HTTP. https://intel.threadlinqs.com/threat/TL-2026-2520 #ThreatIntel #BambooToken #Tendyron #SoftEther
BambooToken hijacks MQTT in hardware token attacks on Windows & Linux—finance, legal & hotels at risk. #SecurityNews #Malware #MQTT #BambooToken #CyberThreats #LinuxWindows thedailytechfeed.com/bambootoken-...
BambooToken smuggles in through a signed Tendyron binary, then goes dark over MQTT. https://intel.threadlinqs.com/threat/TL-2026-2519 #ThreatIntel #BambooToken #MQTT #GitLab