T1195.001Compromise Software Dependencies and Development Tools
99%
“trust in software development and security infrastructure, compromising ci / cd pipelines to distribute trojanized updates and malicious extensions, which enabled large - scale exfiltration of credentials and source code from affected enterprise environments. related : sap npm pa…”
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
T1195.001Compromise Software Dependencies and Development Tools
97%
“trellix source code repository breached cybersecurity company trellix says a part of its source code repository was recently breached, but shared little other information about the incident. trellix said it has been working with forensic experts to investigate the intrusion, and …”
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
T1195.002Compromise Software Supply Chain
55%
“trellix source code repository breached cybersecurity company trellix says a part of its source code repository was recently breached, but shared little other information about the incident. trellix said it has been working with forensic experts to investigate the intrusion, and …”
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
T1195Supply Chain Compromise
48%
“trellix source code repository breached cybersecurity company trellix says a part of its source code repository was recently breached, but shared little other information about the incident. trellix said it has been working with forensic experts to investigate the intrusion, and …”
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
Summary
The cybersecurity firm’s investigation has not found any impact on its source code release or distribution process.