Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry

Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Terraform providers, marking the first time threat actors are using the centralized repository hosted by HashiCorp as a distribution vector for malicious payloads.

According to Aikido, the list of Terraform providers and Go modules is below –

gocommunity-io/dockerd (222 downloads)
kreuzwenker/

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Attack Update: Top 5 Attack-IPs auf doode.info – 28.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 529 requests (recent log) 34.65.117.95 — 387 requests (recent log) 216.73.216.19 — 155 requests (recent

Z.ai confirms Ox Alpha is a new GLM-series model and will release its weights

Z.ai confirms Ox Alpha is a new GLM-series model and will release its weights Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 08.08.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 65.109.35.209 — 2489 requests (recent log) 89.167.35.212 — 703 requests (recent log) 197.144.9.214 — 338 requests (recent