Turla Develops Kazuar Backdoor into a Modular P2P Botnet

The Turla hacking group has revamped its Kazuar backdoor into a sophisticated modular P2P botnet for enhanced stealth and persistent access.

3 min readCybersecurity

The Russian hacking collective known as Turla has upgraded its Kazuar backdoor, transforming it into a modular peer-to-peer (P2P) botnet. This new configuration is designed to provide stealthy and ongoing access to compromised systems. According to the U.S. Cybersecurity and Infrastructure Security Agency (CISA), Turla is believed to have ties to Center 16 of Russia's Federal Security Service (FSB). The evolution of Kazuar highlights the group's commitment to maintaining a foothold in targeted networks, utilizing advanced techniques to evade detection and ensure long-term control. The modular nature of this botnet allows for flexible deployment and adaptability, making it a formidable tool for cyber espionage and other malicious activities.

Cybersecurity