Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry

Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Terraform providers, marking the first time threat actors are using the centralized repository hosted by HashiCorp as a distribution vector for malicious payloads.

According to Aikido, the list of Terraform providers and Go modules is below –

gocommunity-io/dockerd (222 downloads)
kreuzwenker/

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Let’s make quality the norm again

Let’s make quality the norm again Source: Hacker News

DARPA, U.S. Air Force fly AI-controlled F-16

DARPA, U.S. Air Force fly AI-controlled F-16 Source: Hacker News

Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours

Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours Threat actors are continuing to leverage artificial intelligence (AI) to streamline their operations, with one financially motivated hacking group