Cloud data management company Rubrik has found traces of the Brickstorm backdoor inside its customers' backups.
Brickstorm is the backdoor planted inside networks hacked by a Chinese cyber-espionage group.

Unmasking the Invisible: Hunting and Defeating EDR-Evading Threats Like BRICKSTORM
Traditional EDR systems often do not (or cannot) run on appliances like VMware vCenter Server Appliances (VCSA) and other Linux/BSD-based network devices. Threat actors are taking advantage.

Rubrik (zerolabs.rubrik.com)