Established 2026Monday, 20 July 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageThreat Intel Desk
Threat Intel

Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor

China-linked kernel rootkit Daxin has re-emerged in a Taiwanese manufacturer after a four-year hiatus, accompanied by the newly discovered Stupig pre-login backdoor—flagging persistent espionage risk for firms with APAC supply chains.

Summary written by editorial AI · Source link below

Filed by THN (Feedburner)1 min readRead at source ↗

An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm, along with a previously unreported backdoor dubbed Stupig.

Daxin ("srt64.sys"), as the kernel-mode rootkit is referred to, was first documented by Broadcom-owned Symantec in March 2022, with evidence indicating its use in targeted attacks aimed

Editorial Analysis

Why it matters

European manufacturers relying on Taiwanese suppliers face indirect exposure to advanced persistent threats; the reappearance of dormant implants underscores the need for continuous supply-chain threat monitoring.

What to do

Conduct threat hunts for Daxin and Stupig IOCs across manufacturing and OT networks, prioritising segments connected to APAC partners.

Board brief

A dormant Chinese espionage implant has resurfaced in a Taiwan factory, highlighting supply-chain risk for companies with APAC manufacturing ties.

Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.

Continue at the source
Read the full report at THN (Feedburner)

External link — opens at THN (Feedburner) in a new tab.

§
Continue with

More from the Threat Intel Desk