3CX Data Breach Exposes the Risks of Software Supply Chain Attacks

The recent data breach at VoIP provider 3CX highlights the growing threat of software supply chain attacks. Such attacks occur when a threat actor targets a third-party vendor that supplies software to an organization. By compromising the vendor’s software or its update mechanism, the attacker can distribute malicious software to downstream customers, including the organization’s employees and customers.
Become a Subscriber
Please purchase a subscription to continue reading this article.
Subscribe Now

In the case of 3CX, the attack began when an employee downloaded a trojanized version of Trading Technologies’ X_Trader software. This allowed North Korean threat actors to …
Read more…….