France says hackers might go after supply chains after Airbus cyber assault

France says hackers might go after supply chains after Airbus cyber assault


France has issued a new cyber threat advisory about targeted espionage operations directed at third-party service providers and engineering firms. The findings — published by the country’s cybersecurity agency ANSSI (Agence Nationale de la Sécurité des Systèmes d’Information) — is based on its investgation into two different sets of attacks — one involving the use of PlugX malware, and an other that relies on legitimate tools (CertMig, ProcDump, Netscan) and credential theft. ANSSI said the campaign dated as far back as 2017. “The main purpose of these activities seems to be credentials gathering, thanks to spear phishing emails, and phishing…

This story continues at The Next Web

France says hackers might go after supply chains after Airbus cyber assault
Source: The Next Web