A suspected Iranian state-supported threat actor is deploying a newly discovered backdoor named ‘Aclip’ that abuses the Slack API for covert communications. The threat actor’s activity started in 2019 and targeted an unnamed Asian airline to steal flight reservation data.
Read full article on Bleeping Computer