Two stolen NVIDIA code-signing certificates were part of the Feb. 23 Lapsus$ Group ransomware attack. The stolen certificates are now being used to sign malware so malicious programs can slide past security safeguards on Windows machines. Security experts call the certificate theft a significant threat and say a fix for supply-chain threats is to establish new chains of trust in NVIDIAs software development with new certificates. The certificates are expired, but theyre still recognized by Windows, which allow a driver signed with the certificates to be loaded in the operating system.”]
Source: https://threatpost.com/nvidias-stolen-code-signing-certs-sign-malware/178784/