Supply ChainMay 5, 2026
And @smica83 uploaded some related samples to Bazaar: https://t.co/wQOjM1hv75 And as expected in...
Supply chain attack exploits compromised official certificate to distribute malicious signed files.
Summary
A supply chain attack leverages a legitimate certificate issued to "AVB Disc Soft, SIA" to distribute malicious files that appear officially signed. Related samples have been uploaded to Bazaar for analysis. The attack demonstrates how compromised code-signing credentials can be weaponized to bypass security controls and distribute malware at scale.
Indicators of Compromise
- malware — AVB Disc Soft, SIA signed malware
Entities
AVB Disc Soft, SIA (vendor)Bazaar (technology)