You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
brickstorm backdoor
About this tag
The brickstorm backdoor is a sophisticated Go-based backdoor used in targeted espionage campaigns, primarily targeting VMware vCenter and appliances. It establishes long-term persistence by exploiting appliance blind spots to steal credentials and cloned virtual machine snapshots for offline credential extraction and data theft. First surfaced in public reporting in 2024, brickstorm backdoor is characterized as a stealthy, low-noise backdoor deployed on appliances and virtualization management systems. Discussions on WindowsForum cover its operation, impact, and mitigation strategies for enterprise IT environments.
A coordinated government and industry response has confirmed that a sophisticated Go‑based backdoor called BRICKSTORM has been used in targeted espionage campaigns to establish long-term persistence on appliances and virtualization management systems, with operators exploiting appliance blind...