Get a Pentest and security assessment of your IT network.

News

NVIDIAs Stolen Code-Signing Certs Used to Sign Malware

Two stolen NVIDIA code-signing certificates were part of the Feb. 23 Lapsus$ Group ransomware attack. The stolen certificates are now being used to sign malware so malicious programs can slide past security safeguards on Windows machines. Security experts call the certificate theft a significant threat and say a fix for supply-chain threats is to establish new chains of trust in NVIDIAs software development with new certificates. The certificates are expired, but theyre still recognized by Windows, which allow a driver signed with the certificates to be loaded in the operating system.”]

Source: https://threatpost.com/nvidias-stolen-code-signing-certs-sign-malware/178784/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks