Cybersecurity in the News: 3CX Desktop App compromise
ID: 445abf4b-999e-52c1-8bc6-9c56d03e866f
STIX ID: report--445abf4b-999e-52c1-8bc6-9c56d03e866f
Feed Name: ThreatLocker Blog
Threat Score
ThreatLocker confirms a compromise of the 3CX desktop application: a signed 3CX MSI was used to drop two malicious DLLs that deliver a payload while 3CXDesktopApp.exe itself appears not malicious. Affected versions identified are 18.12.416 and 18.12.407; ThreatLocker recommends creating a deny policy for the reported files, applying Ringfencing to limit application access, and using their built-in application definitions to block the compromised files.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
