logo

AnyDesk breach incident

ID: b12361d0-46e6-5b5c-aa5d-0b364cdf9a42

STIX ID: report--b12361d0-46e6-5b5c-aa5d-0b364cdf9a42

Feed Name: ThreatLocker Blog

Threat Score
70/100

Date Published: 2025-01-09

Date Updated: 2026-05-01

...
...

AnyDesk disclosed a security breach in which attackers exfiltrated source code and code-signing certificates; AnyDesk revoked the compromised certificates, replaced affected systems, and advised users to change passwords and upgrade to the latest AnyDesk release. The report lists the compromised certificate signature ('philandro Software GmbH') and serial number (0dbf152deaf0b981a8a938d53f769db8), the new signature ('AnyDesk Software GmbH') and serial (0a8177fcd8936a91b5e0eddf995b0ba5), and provides ThreatLocker detection and allowlisting guidance to mitigate risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.