Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry

Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Terraform providers, marking the first time threat actors are using the centralized repository hosted by HashiCorp as a distribution vector for malicious payloads.

According to Aikido, the list of Terraform providers and Go modules is below –

gocommunity-io/dockerd (222 downloads)
kreuzwenker/

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Software development with AI is starting to feel like cooking steak

Software development with AI is starting to feel like cooking steak Source: Hacker News

Security Is Hard, Y’all

Security Is Hard, Y’all Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 10.09.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 144.76.19.72 — 1035 requests (recent log) 89.167.35.212 — 670 requests (recent log) 74.7.241.36 — 243 requests (recent