TGTGInsighttelegram intelligenceLIVE / telegram public index
Post content
Post content
⚠️ A previously unseen backdoor called Dohdoor is being deployed against U.S. schools and healthcare orgs. Tracked as UAT-10027, the campaign chains phishing → PowerShell loaders → DLL side-loading → DoH C2 (via Cloudflare) → final Cobalt Strike payload. 🔗 Details → https://thehackernews.com/2026/02/uat-10027-targets-us-education-and.html