This week ·

Google

How they got in, as reported. A supplier or vendor that was compromised first.

← All items this week
Date
7 Oct 2026
Place
South Korea
Who
Google
The way in
Vendor compromise
Source
BleepingComputer
01 · What was reported

What was reported.

Threat actors obtained unauthorized HTTPS certificates for several Google domains and other organizations by compromising third-party operators of specific ccTLDs. The compromise allowed the attackers to modify authoritative DNS records...

The way in, as the source states it: a supplier or vendor that was compromised first.

02 · What we check for it

What we check for it.

The outside services your domain depends on.

03 · Source

Source.

Source: BleepingComputer ↗

This page repeats what the source reported, with its date. It says nothing about any firm that is not named in it.