AnyDesk breach incident
ID: b12361d0-46e6-5b5c-aa5d-0b364cdf9a42
STIX ID: report--b12361d0-46e6-5b5c-aa5d-0b364cdf9a42
Feed Name: ThreatLocker Blog
AnyDesk disclosed a security breach in which attackers exfiltrated source code and code-signing certificates; AnyDesk revoked the compromised certificates, replaced affected systems, and advised users to change passwords and upgrade to the latest AnyDesk release. The report lists the compromised certificate signature ('philandro Software GmbH') and serial number (0dbf152deaf0b981a8a938d53f769db8), the new signature ('AnyDesk Software GmbH') and serial (0a8177fcd8936a91b5e0eddf995b0ba5), and provides ThreatLocker detection and allowlisting guidance to mitigate risks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
