Switch language한국어
Back to the list

Malicious installer distributed on DAEMON Tools official website... undetected for a month

TL;DR AI

Key summary

2 min read
  1. Kaspersky says the official Daemon Tools site hosted trojanized installers for versions 12.5.0.2421 to 12.5.0.2434 in a supply-chain attack.

  2. The infected downloads spread to systems in more than 100 countries, with most victims hit by an info-stealer.

  3. A smaller group was manually targeted with shellcode injectors and unknown RATs/backdoors, suggesting more tailored intrusion attempts.

  4. The case shows how trusted vendor websites can bypass normal defenses and quietly expose users and organizations to theft and persistent compromise.

Read the original