National Cyber Warfare Foundation (NCWF)

The Ultralytics Supply Chain Attack: Connecting the Dots with GitGuardian s Public Monitoring Data


0 user ratings
2024-12-11 15:40:10
milo
Blue Team (CND)

 - archive -- 

On December 4, 2024, the Ultralytics Python module was backdoored to deploy a cryptominer. Using GitGuardian’s data, we reconstructed deleted commits, connecting the dots with the initial analysis. This investigation highlights the value of GitGuardian’s data in understanding supply chain attacks.


The post The Ultralytics Supply Chain Attack: Connecting the Dots with GitGuardian’s Public Monitoring Data appeared first on Security Boulevard.



Guillaume Valadon

Source: Security Boulevard
Source Link: https://securityboulevard.com/2024/12/the-ultralytics-supply-chain-attack-connecting-the-dots-with-gitguardians-public-monitoring-data/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.