Procolored, a major Chinese printer manufacturer, has been inadvertently infecting its customers with backdoors, infostealers, and cryptocurrency stealers for six months.
Six of Procolored's product lines were found to be infected with malware, with the last software update made in October 2024, indicating the deployment of malware for at least half a year before detection.
Researchers discovered 39 malware detections in 20 uniquely hashed executables, including RATs, trojans, clipboard stealers, and cryptocurrency stealers, with almost 10 BTC stolen by the attackers.
Following the discovery, all software was removed from Procolored's website, an investigation was initiated, and the company suspects that its own systems were compromised as well.