TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

SecurityWeek

DigiCert Revokes Certificates After Support Portal Hack

Ionut Arghire · 2 days ago · Read original ↗

ATT&CK techniques detected

2 predictions
T1588.003Code Signing Certificates
94%
"digicert revokes certificates after support portal hack digicert last week announced that certificates fraudulently obtained from its internal support portal after a cyberattack were revoked. the attack, the company said in a detailed report, occurred on april 2, when a threat ac…"
T1588.003Code Signing Certificates
78%
". since the threat actor was able to obtain these two pieces of information for a finite set of approved orders, they were able to obtain ev code signing certificates across a set of customer accounts and cas, ” digicert says. by april 17, the company identified and revoked 60 ce…"

Summary

Hackers delivered malware via a customer chat channel, infected an analyst’s system, and accessed the internal support portal.

The post DigiCert Revokes Certificates After Support Portal Hack appeared first on SecurityWeek.