08/21/2025
Microsoft researchers have detailed a modular backdoor framework called “PipeMagic,” used by threat actors to stealthily deploy ransomware.
PipeMagic is used by the threat group known as Storm-2460 and is spread through impersonation of a legitimate open-source ChatGPT desktop application tool, according to a Microsoft blog post published Monday. - https://www.scworld.com/news/modular-pipemagic-backdoor-used-to-deploy-ransomware