QuickFox VPN trojanized installer delivers FDMTP backdoor in supply chain
Source headline: QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer
Intelligence Summary
Fortinet FortiGuard Labs reports a long-running supply chain compromise affecting QuickFox, a VPN and network acceleration tool for overseas Chinese users. The incident involves a trojanized Windows installer that contains the FDMTP backdoor. The backdoor can enable unauthorized access once the infected installer is executed. Because the compromise occurs in the software delivery process, victims may be infected without any direct hacking of their systems. Users should verify the installer source, ensure downloads come only from trusted channels, and consider checking for suspicious persistence or backdoor activity.
Recommended Action
Review affected assets, schedule urgent remediation, and monitor related indicators.