SECURITYTHE HACKER NEWS
QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer
Cybersecurity researchers have disclosed a long-standing supply chain attack on QuickFox, a virtual private network (VPN) and network acceleration tool for overseas Chinese users. Fortinet FortiGuard Labs reported the attack, which has been ongoing since at least August 2025, involves a trojanized version of the application to deliver FDMTP, a backdoor.
Mentioned
Related Signal
Adjacent reporting
- DAEMON Tools trojanized in supply-chain attack to deploy backdoor
- Hackers have compromised dozens of popular open source packages in an ongoing supply chain attack
- Two different attackers poisoned popular open source tools - and showed us the future of supply chain compromise
- DAEMON Tools Supply Chain Attack Compromises Official Installers with Malware
- TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO