{ads}

New Supply Chain Attack Exploits Abandoned S3 Buckets to Distribute Malicious Binaries



June 15, 2023 at 05:26PM

In what's a new kind of software supply chain attack aimed at open source projects, it has emerged that threat actors could seize control of expired Amazon S3 buckets to serve rogue binaries without altering the modules themselves. "Malicious binaries steal the user IDs, passwords, local machine environment variables, and local host name, and then exfiltrates the stolen data to the hijacked

from The Hacker News https://ift.tt/Zzqw2p4

0 Response to "New Supply Chain Attack Exploits Abandoned S3 Buckets to Distribute Malicious Binaries"

Post a Comment

Article Top Ads

Central Ads Article 1

Middle Ads Article 2

Article Bottom Ads