China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth
Security researchers discovered two Windows variants of the SprySOCKS backdoor—WIN_DRV and WIN_PLUS—using advanced kernel-level stealth drivers and injection chains. The finding reveals state-sponsored actors expanding their cyber espionage tools across multiple platforms, significantly broadening t