As cited
Copy frozen at (site build).
threat intel
Commit to Compromise: A New Threat Actor Targeting the Cryptocurrency Industry's Software Development Infrastructure
Wiz CIRT and Wiz Research have identified a threat actor called JINX-0164 that uses LinkedIn social engineering and custom macOS malware to compromise cryptocurrency organizations' software development infrastructure through CI/CD (continuous integration/continuous delivery) hijacking.
Why it matters: Cryptocurrency developers and organizations with macOS-based development environments are exposed to supply chain attacks that could compromise software releases and internal systems; practitioners should review access controls and monitor CI/CD pipelines for unauthorized changes.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Commit to Compromise: A New Threat Actor Targeting the Cryptocurrency Industry's Software Development Infrastructure
Wiz CIRT and Wiz Research have identified a threat actor called JINX-0164 that uses LinkedIn social engineering and custom macOS malware to compromise cryptocurrency organizations' software development infrastructure through CI/CD (continuous integration/continuous delivery) hijacking.
Why it matters: Cryptocurrency developers and organizations with macOS-based development environments are exposed to supply chain attacks that could compromise software releases and internal systems; practitioners should review access controls and monitor CI/CD pipelines for unauthorized changes.
- Source published
- First seen by Cybersecurity Tracker