Switch language한국어
Back to the list

Hackers used Daemon Tools' own website to silently install backdoors on thousands of PCs for nearly a month

TL;DR AI

Key summary

2 min read
  1. Researchers found trojanized Daemon Tools Windows installers on the official site from April 8 to early May.

  2. The compromised signed installers embedded a backdoor that collected system information and reached out to attacker infrastructure.

  3. The campaign hit victims in more than 100 countries, with a small number receiving second-stage payloads.

  4. Kaspersky detected the issue and notified vendor AVB Disc Soft after uncovering the compromise.

Read the original