Fox Tempest Abused Microsoft Artifact Signing to Certify Malware
ID: 7bd73a3b-3f36-5d44-8034-399a2d772730
STIX ID: report--7bd73a3b-3f36-5d44-8034-399a2d772730
Feed Name: Cyber Press
Threat Score
**Executive summary:** Microsoft’s Digital Crimes Unit dismantled Fox Tempest, a commercial malware-signing-as-a-service that abused Microsoft Artifact Signing to issue short-lived fraudulent code-signing certificates used by multiple ransomware and malware operators; Microsoft seized infrastructure, revoked certificates, and published indicators and mitigation guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
