logoalt Hacker News

orthogonal_cubetoday at 3:00 PM1 replyview on HN

Seems the installers hosted by them are fine. The links on the site have been changed to direct people towards Cloudflare R2 storage with various copies of malicious executables.

Looking forward to information down the line on how this came about.


Replies

1970-01-01today at 4:08 PM

Not exactly a supply chain compromise, as devs should be smart enough to update via a package manager such as winget and chocolatey, but it certainly fits for a watering hole attack.

show 1 reply