GoldenEyeDog Hackers Exploit DigiCert Breach to Hijack Code-Signing Certificates

GoldenEyeDog Hackers Exploit DigiCert Breach to Hijack Code-Signing Certificates

First seen 20 Jul 2026, 11:05 UTC ThehackernewsGbhackersCybersecuritynews 82% similarity 70.5

Article Content

Browse articles
ThreatCluster

The GoldenEyeDog hacking group, linked to the Golden Gh0st malware, has breached DigiCert, compromising code-signing certificates. This breach allowed attackers to intercept customer certificate activation codes and sign malicious files. The incident raises significant concerns regarding the security of code-signing processes and the potential for widespread exploitation. Affected systems include those relying on DigiCert for secure code-signing. The breach highlights vulnerabilities in certificate management and the risks posed by state-linked cybercrime. Current investigations are ongoing to assess the full scope of the breach and its implications for affected organizations.

Key Points: • GoldenEyeDog exploited DigiCert to hijack code-signing certificates. • Attackers intercepted customer activation codes to sign malicious files. • The breach raises serious concerns about code-signing security.

ThreatCluster AI

Timeline

2026-07-17
DigiCert breach reported
GoldenEyeDog's intrusion at DigiCert exposed vulnerabilities in code-signing certificates, allowing code hijacking.
Thehackernews
2026-07-20
GoldenEyeDog linked to breach
Cybersecuritynews confirmed the involvement of GoldenEyeDog in the DigiCert breach, highlighting the risks of code-signing certificate theft.
Cybersecuritynews

Community

Browse all →