{"id":173512,"date":"2023-04-04T20:31:17","date_gmt":"2023-04-04T20:31:17","guid":{"rendered":"https:\/\/precoinnews.com\/?p=173512"},"modified":"2023-04-04T20:31:17","modified_gmt":"2023-04-04T20:31:17","slug":"massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky","status":"publish","type":"post","link":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/","title":{"rendered":"Massive supply chain attack targeting small number of crypto companies: Kaspersky"},"content":{"rendered":"

A supply chain attack installed a backdoor in computers around the world but has only been deployed in fewer than ten computers, cybersecurity company Kaspersky has reported. The deployments showed a particular interest in cyptocurrency companies, it added.\u00a0<\/p>\n

Cybersecurity company Crowdstrike reported on March 29 that it has identified malicious activity on the 3CX softphone app 3CXDesktopApp. The app is marketed to corporate clients. The malicious activity detected included \u201cbeaconing to actor-controlled infrastructure, deployment of second-stage payloads, and, in a small number of cases, hands-on-keyboard activity.\u201d <\/p>\n

Kaspersky\u00a0said it suspected the involvement of the North Korea-linked threat actor Labyrinth Chollima. 3CX said of the infection:<\/p>\n

\u201cThis appears to have been a targeted attack from an Advanced Persistent Threat, perhaps even state sponsored, that ran a complex supply chain attack and picked who would be downloading the next stages of their malware.\u201d<\/p><\/blockquote>\n

Kaspersky was already investigating a dynamic link library (DLL) found in one of the infected 3CXDesktopApp .exe file, it said. The DLL in question had been used to deliver the Gopuram backdoor, although it was not the only malicious payload deployed in the attack. Gopuram has been found to coexist with the AppleJeus backdoor attributed to the North Korean Lazarus group, Kaspersky added. <\/p>\n

Related: North Korean hackers are pretending to be crypto VCs in new phishing scheme \u2014 Kaspersky<\/em><\/strong><\/p>\n

Infected 3CX software has been detectedaround the world, with highest infection figures in Brazil, Germany, Italy and France. Gopuram has been deployed in fewer than ten computers, however, in a display of \u201csurgical precision,\u201d Kaspersky said. It had found a Gopuram infection in a Southeast Asian cryptocurrency company in the past.<\/p>\n

The 3CX app is used by over 600,000 companies, including several major brands, Kapersky said, citing the maker. The infected app had DigiCert certification. <\/p>\n

Magazine: 4 out of 10 NFT sales are fake: Learn to spot the signs of wash trading<\/em><\/strong><\/p>\n

Source: Read Full Article<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"

A supply chain attack installed a backdoor<\/p>\n","protected":false},"author":3,"featured_media":173511,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"yoast_head":"\nMassive supply chain attack targeting small number of crypto companies: Kaspersky - Pre Coin News<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Massive supply chain attack targeting small number of crypto companies: Kaspersky - Pre Coin News\" \/>\n<meta property=\"og:description\" content=\"A supply chain attack installed a backdoor\" \/>\n<meta property=\"og:url\" content=\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/\" \/>\n<meta property=\"og:site_name\" content=\"Pre Coin News\" \/>\n<meta property=\"article:published_time\" content=\"2023-04-04T20:31:17+00:00\" \/>\n<meta name=\"author\" content=\"mediabest\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/precoinnews.com\/wp-content\/uploads\/2023\/04\/Massive-supply-chain-attack-targeting-small-number-of-crypto-companies-Kaspersky.jpg\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"mediabest\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/\",\"url\":\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/\",\"name\":\"Massive supply chain attack targeting small number of crypto companies: Kaspersky - Pre Coin News\",\"isPartOf\":{\"@id\":\"https:\/\/precoinnews.com\/#website\"},\"datePublished\":\"2023-04-04T20:31:17+00:00\",\"dateModified\":\"2023-04-04T20:31:17+00:00\",\"author\":{\"@id\":\"https:\/\/precoinnews.com\/#\/schema\/person\/ad0e9920e03d3b41c7ad02a18375d76a\"},\"breadcrumb\":{\"@id\":\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/precoinnews.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Crypto\",\"item\":\"https:\/\/precoinnews.com\/category\/crypto\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Massive supply chain attack targeting small number of crypto companies: Kaspersky\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/precoinnews.com\/#website\",\"url\":\"https:\/\/precoinnews.com\/\",\"name\":\"Pre Coin News\",\"description\":\"precoinnews.com\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/precoinnews.com\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/precoinnews.com\/#\/schema\/person\/ad0e9920e03d3b41c7ad02a18375d76a\",\"name\":\"mediabest\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/precoinnews.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/f5f13cb3b94fc348d515c0951f6ca073?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/f5f13cb3b94fc348d515c0951f6ca073?s=96&d=mm&r=g\",\"caption\":\"mediabest\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Massive supply chain attack targeting small number of crypto companies: Kaspersky - Pre Coin News","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/","og_locale":"en_US","og_type":"article","og_title":"Massive supply chain attack targeting small number of crypto companies: Kaspersky - Pre Coin News","og_description":"A supply chain attack installed a backdoor","og_url":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/","og_site_name":"Pre Coin News","article_published_time":"2023-04-04T20:31:17+00:00","author":"mediabest","twitter_card":"summary_large_image","twitter_image":"https:\/\/precoinnews.com\/wp-content\/uploads\/2023\/04\/Massive-supply-chain-attack-targeting-small-number-of-crypto-companies-Kaspersky.jpg","twitter_misc":{"Written by":"mediabest","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/","url":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/","name":"Massive supply chain attack targeting small number of crypto companies: Kaspersky - Pre Coin News","isPartOf":{"@id":"https:\/\/precoinnews.com\/#website"},"datePublished":"2023-04-04T20:31:17+00:00","dateModified":"2023-04-04T20:31:17+00:00","author":{"@id":"https:\/\/precoinnews.com\/#\/schema\/person\/ad0e9920e03d3b41c7ad02a18375d76a"},"breadcrumb":{"@id":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/precoinnews.com\/crypto\/massive-supply-chain-attack-targeting-small-number-of-crypto-companies-kaspersky\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/precoinnews.com\/"},{"@type":"ListItem","position":2,"name":"Crypto","item":"https:\/\/precoinnews.com\/category\/crypto\/"},{"@type":"ListItem","position":3,"name":"Massive supply chain attack targeting small number of crypto companies: Kaspersky"}]},{"@type":"WebSite","@id":"https:\/\/precoinnews.com\/#website","url":"https:\/\/precoinnews.com\/","name":"Pre Coin News","description":"precoinnews.com","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/precoinnews.com\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/precoinnews.com\/#\/schema\/person\/ad0e9920e03d3b41c7ad02a18375d76a","name":"mediabest","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/precoinnews.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/f5f13cb3b94fc348d515c0951f6ca073?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f5f13cb3b94fc348d515c0951f6ca073?s=96&d=mm&r=g","caption":"mediabest"}}]}},"_links":{"self":[{"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/posts\/173512"}],"collection":[{"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/comments?post=173512"}],"version-history":[{"count":0,"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/posts\/173512\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/media\/173511"}],"wp:attachment":[{"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/media?parent=173512"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/categories?post=173512"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/precoinnews.com\/wp-json\/wp\/v2\/tags?post=173512"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}