supply-chain
China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns
High
Summary
China-linked hackers, believed to be part of the Storm-1175 group, are exploiting a critical vulnerability in N-central, a remote monitoring and management (RMM) tool, to deploy ransomware. This supply-chain attack is leveraging a zero-day vulnerability, allowing attackers to gain full administrative control of N-central servers and subsequently compromise numerous client endpoints managed by MSPs. The campaign is reminiscent of previous attacks on RMM tools, highlighting the significant risk posed by these tools to a wide range of organizations.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
