Thehackernews
GoldenEyeDog Hackers Exploit DigiCert Breach to Hijack Code-Signing Certificates
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
The GoldenEyeDog hacking group, linked to the Golden Gh0st malware, has breached DigiCert, compromising code-signing certificates. This breach allowed attackers to intercept customer certificate activation codes and sign malicious files. The incident raises significant concerns regarding the security of code-signing processes and the potential for widespread exploitation. Affected systems include those relying on DigiCert for secure code-signing. The breach highlights vulnerabilities in certificate management and the risks posed by state-linked cybercrime. Current investigations are ongoing to assess the full scope of the breach and its implications for affected organizations.
Key Points: • GoldenEyeDog exploited DigiCert to hijack code-signing certificates. • Attackers intercepted customer activation codes to sign malicious files. • The breach raises serious concerns about code-signing security.