Supply chain attack hits 3CX VoIP software, drops malware to hosts
The company's CISO said a bundled library contains an executable file, and urges network defenders to uninstall the desktop client.
Source: scmagazine.com
Stay updated with breaking news from Electron Mac App. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
The company's CISO said a bundled library contains an executable file, and urges network defenders to uninstall the desktop client.
Remember SolarWinds? A similar attack is playing out now against a new software supplier.
In a Solar Winds-like attack, compromised, digitally signed versions of 3CX DesktopApp are landing on user systems via the vendor's update mechanism.