Get a Pentest and security assessment of your IT network.

News

How SolarWinds Busted Up Our Assumptions About Code Signing

Four malware strains have been identified, one being Sunspot, which was installed on the SolarWinds build server that developers use to piece together software applications. An attacker that can inject changes into a software build pipeline or continuous integration (CI) process will be able to make changes that are included in the signed final product. Software vendors may not have thought to take great care in securing their software release pipeline, but these recent attacks have more and more taking a deep look at how they can do that effectively.”]

Source: https://www.darkreading.com/attacks-breaches/how-solarwinds-busted-up-our-assumptions-about-code-signing

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin