Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Tracking a stolen code-signing certificate with osquery

Summary

Using osquery's new Windows Authenticode checks, Trail of Bits shows how to hunt binaries signed with the stolen certificate in the CCleaner supply chain attack that hit 2.27 million machines.
Published
Collected

original ↗

Related coverage

back