A bara, Cibiyar Tsaro ta Intanet ta Burtaniya (NCSC) ta sami bambance-bambancen SparrowDoor na ɗan leƙen asiri a kan hanyar sadarwar Burtaniya da ba a bayyana ba. An buga nazarin bambance-bambancen a yau, wanda yanzu zai iya satar bayanai daga allon allo, a tsakanin sauran abubuwa. Bugu da ƙari, an samar da alamun sasantawa da dokokin Yara waɗanda ke ba ƙungiyoyi damar gano malware a cikin hanyar sadarwar su.
Kamfanin riga-kafi na ESET ne ya gano sigar farko ta SparrowDoor kuma an ce an yi amfani da ita a kan otal-otal a duk duniya, da kuma a kan gwamnatoci. Maharan sun yi amfani da rashin lahani a cikin Microsoft Exchange, Microsoft SharePoint da Oracle Opera don kutsa kai cikin kungiyoyi. Ƙungiyoyin da abin ya shafa sun kasance a Kanada, Isra'ila, Faransa, Saudi Arabia, Taiwan, Thailand da Birtaniya, da sauransu. ESET ba ta bayyana ainihin inda maharan suka nufa ba.
Hukumar NCSC ta Biritaniya ta ce ta sami bambance-bambancen SparrowDoor a kan hanyar sadarwar Burtaniya a bara. Wannan sigar za ta iya satar bayanai daga allon allo kuma ta bincika jerin faifai ko wasu software na riga-kafi suna aiki. Wannan bambance-bambancen kuma na iya yin kwaikwayon alamar asusun mai amfani lokacin saita haɗin yanar gizo. Da alama wannan "downgrade" an yi shi ne don zama mai ban sha'awa, wanda zai iya kasancewa idan yana yin sadarwar sadarwar a karkashin asusun SYSTEM, misali.
Wani sabon salo kuma shi ne garkuwa da mutane daban-daban Windows API ayyuka. Ba a bayyana lokacin da malware ɗin ke amfani da "API hooking" da "kwaikwayi alama", amma bisa ga NCSC na Burtaniya, maharan suna yanke shawarar tsaro na aiki da hankali. Ba a bayar da ƙarin cikakkun bayanai game da cibiyar sadarwar da aka kai hari ko kuma wanda ke bayan malware ba.