South Korea
KOR
ESET found that attackers replaced IPany's legitimate Windows VPN installer with a trojanized installer delivering the SlowStepper backdoor. Telemetry showed installations inside a South Korean semiconductor company and software-development company, with earlier infected victims in Japan and China; the malicious installer was removed after ESET notified the provider in May 2024.
Estimated severity
73 / 100
Source reliability
90 / 100
Approximate Date
22/01/2025
Targeted Company
IPANY
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
South Korea
KOR
Japan
JPN
China
CHN
Target country
South Korea
Affected countries
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
Incident Sources
Please rotate your phone