3CX’s supply chain attack was caused by… another supply chain attack

Variety
20-04-2023 | 08:42
High views
Share
LBCI
Share
LBCI
Whatsapp
facebook
Twitter
Messenger
telegram
telegram
print
3CX’s supply chain attack was caused by… another supply chain attack
Whatsapp
facebook
Twitter
Messenger
telegram
telegram
print
0min
3CX’s supply chain attack was caused by… another supply chain attack

The incident responders investigating how hackers carried out a complex supply-chain attack targeting enterprise phone provider 3CX say the company was compromised by another supply chain attack.

3CX, which develops a software-based phone system used by over 600,000 organizations worldwide with more than 12 million active daily users, worked with cybersecurity company Mandiant to investigate the incident. In its report released on Thursday, Mandiant said that attackers compromised 3CX using a malware-laced version of the X Trader financial software, developed by Trading Technologies.

X_Trader was a platform used by traders to view real-time and historical markets, which Trading Technologies phased out in 2020, but Mandiant says was still available to download from the company’s website in 2022.

Mandiant said it suspects the Trading Technologies website was compromised by a group of North Korea state-backed hackers, which it refers to as UNC4736.
 

3CX

Supply

Chain

Attacked

Caused

Another

Attack

Download now the LBCI mobile app
To see the latest news, the latest daily programs in Lebanon and the world
Google Play
App Store
We use
cookies
We use cookies to make
your experience on this
website better.
Accept
Learn More