This week ·
How they got in, as reported. A supplier or vendor that was compromised first.
← All items this week- Date
- 7 Oct 2026
- Place
- South Korea
- Who
- The way in
- Vendor compromise
- Source
- BleepingComputer
01 · What was reported
What was reported.
Threat actors obtained unauthorized HTTPS certificates for several Google domains and other organizations by compromising third-party operators of specific ccTLDs. The compromise allowed the attackers to modify authoritative DNS records...
The way in, as the source states it: a supplier or vendor that was compromised first.
02 · What we check for it
What we check for it.
The outside services your domain depends on.
03 · Source
Source.
Source: BleepingComputer ↗This page repeats what the source reported, with its date. It says nothing about any firm that is not named in it.