Black Lotus Labs researchers found that malware installation in targeted routers allows the deployment of a cd00r variant. This scans for five network signals, triggering reverse shell creation on the local file system, enabling device takeover, data theft, and further malware compromise.

Threat Actor Targeting Indian Defense Sector
Summarize this content to a maximum of 60 words: A threat actor based in Pakistan (APT36) has engaged in a sophisticated cyber-espionage campaign.