As cited
Copy frozen at (site build).
threat intel
Risky Bulletin: DigiCert hacked with a malicious screensaver file
A threat actor compromised two DigiCert tech support employees through social engineering, convincing them to execute a malicious screensaver file. The attacker gained access to DigiCert's backend and obtained 27 code signing certificates that were subsequently used to sign malware. The incident highlights the risk of social engineering attacks targeting support staff with system access.
Why it matters: Compromised code signing certificates enable attackers to sign malware and bypass security controls; organizations should revoke these certificates immediately and investigate any software signed with them during the compromise window.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Risky Bulletin: DigiCert hacked with a malicious screensaver file
A threat actor compromised two DigiCert tech support employees through social engineering, convincing them to execute a malicious screensaver file. The attacker gained access to DigiCert's backend and obtained 27 code signing certificates that were subsequently used to sign malware. The incident highlights the risk of social engineering attacks targeting support staff with system access.
Why it matters: Compromised code signing certificates enable attackers to sign malware and bypass security controls; organizations should revoke these certificates immediately and investigate any software signed with them during the compromise window.
- Source published
- First seen by Cybersecurity Tracker