Tag

Cyber Threat Supply Chain Attack

All articles tagged with #cyber threat supply chain attack

cyber-threat-supply-chain-attack2 years ago

"Massive Supply Chain Attack Targets 3CX Users with Trojanized Apps"

Enterprise communications software maker 3CX has confirmed that multiple versions of its desktop app for Windows and macOS are affected by a supply chain attack. The attack leveraged a technique called DLL side-loading to load a rogue library referred to as "ffmpeg.dll" that's designed to read encrypted shellcode from another DLL called "d3dcompiler_47.dll." Cybersecurity firm CrowdStrike has attributed the attack with high confidence to Labyrinth Chollima, a North Korea-aligned state-sponsored actor.