Global Supply Chain Cyberattack Targets 3CX VoIP App

1 min read
Source: BleepingComputer
Global Supply Chain Cyberattack Targets 3CX VoIP App
Photo: BleepingComputer
TL;DR

Hackers are using a trojanized version of the 3CX Voice Over Internet Protocol (VOIP) desktop client to target the company's customers in a supply chain attack. The attackers are targeting both Windows and macOS users of the compromised 3CX softphone app. The malware is capable of harvesting system info and stealing data and stored credentials from Chrome, Edge, Brave, and Firefox user profiles. The trojanized version of 3CX's desktop client will connect to attacker-controlled domains. Multiple customers have reported that the VoIP client app was marked as malicious by various security software.

Share this article

Want the full story? Read the original reporting

Read on BleepingComputer