TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Bleeping Computer

Trellix discloses data breach after source code repository hack

Sergiu Gatlan · 1 day ago · Read original ↗

ATT&CK techniques detected

2 predictions
T1195.001Compromise Software Dependencies and Development Tools
89%
“trellix spokesperson shared the same statement when bleepingcomputer asked for more details about the breach, including when it was detected, whether the attackers had also stolen corporate or customer data, and whether they had sent a ransom demand. while trellix has yet to repl…”
T1587.004Exploits
76%
“chained four zero - days into one exploit that bypassed both renderer and os sandboxes. a wave of new exploits is coming. at the autonomous validation summit ( may 12 & 14 ), see how autonomous, context - rich validation finds what ' s exploitable, proves controls hold, and close…”

Summary

Cybersecurity firm Trellix disclosed a data breach after attackers gained access to "a portion" of its source code repository. [...]