Switch language한국어
Back to the list

CrowdStrike and Google take down botnet used by hackers to target software developers in supply chain attacks

TL;DR AI

Key summary

2 min read
  1. CrowdStrike said it helped disrupt four command-and-control channels linked to the Glassworm botnet.

  2. The botnet used malicious extensions, search ads, and stolen credentials to infect developer systems and plant malware in open-source projects.

  3. Attackers reportedly poisoned more than 300 GitHub repositories, creating supply-chain risk for downstream organizations.

  4. The takedown by CrowdStrike, Google, and Shadowserver helps limit a campaign that could spread from one developer to many victims.

Read the original