TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Lobsters — security tag

I Do Not Recommend Bitwarden

マリウス.com via raymii · 4 days ago · Read original ↗

ATT&CK techniques detected

4 predictions
T1195.001Compromise Software Dependencies and Development Tools
99%
“across other affected repositories in this campaign. … organizations that installed the malicious bitwarden npm package should treat this incident as a credential exposure and ci / cd compromise event. the payload downloaded the bun runtime, decrypted a second - stage shai - hulu…”
T1195.001Compromise Software Dependencies and Development Tools
92%
“marek toth publicly disclosed a class of dom - based clickjacking attacks that could trick the bitwarden browser extension into autofilling credit card details and personal information after a single click on a malicious page. the vulnerability had been reported four months earli…”
T1555.005Password Managers
62%
“) - e : one - off credentials ( think api keys, tokens, etc. ) group a : professional / client projects for group a i ’ m going with a saas password manager that offers proper vault sharing, integrates with the tools clients actually use ( sso, browser extensions on corporate mac…”
T1195.002Compromise Software Supply Chain
45%
“marek toth publicly disclosed a class of dom - based clickjacking attacks that could trick the bitwarden browser extension into autofilling credit card details and personal information after a single click on a malicious page. the vulnerability had been reported four months earli…”

Summary

Comments