The Pamdoora backdoor targets Linux authentication modules to silently record SSH passwords and maintain persistent remote access.