Widely used Daemon Tools disk app backdoored in monthlong supply-chain attack

TL;DR AI
2 min readKey summary
Kaspersky says a compromised Daemon Tools distribution was used in a monthlong supply-chain attack.
About 100 organizations were hit, mostly with an information-stealing payload, while a smaller set received backdoors.
The more advanced malware was found on about a dozen machines in government, scientific, manufacturing, and retail sectors.
The attack highlights how trusted software can be abused to spread stealthy malware and targeted command-and-control backdoors.



