As cited
Copy frozen at (site build).
threat intel
Risky Bulletin: Domain resurrection attacks come to Canonical's Snap Store
A threat actor has exploited expired domains to compromise developer accounts and publish malware to Canonical's Snap Store, a Linux package repository. By registering abandoned domains previously associated with developer email addresses, the attacker gained access to at least two accounts and used domain resurrection techniques to reset passwords. The campaign appears to target the Snap Store's package distribution mechanism.
Why it matters: Developers using Snap packages should audit account access, verify recent package updates from affected maintainers, and consider enabling additional authentication controls if available.
- Source published
- First seen by Cybersecurity Tracker