AfterDawn: Tech news

Bit9 hacked, customers targeted with malware

Written by James Delahunty @ 10 Feb 2013 10:33 User comments (1)

Bit9 hacked, customers targeted with malware Security firm hacked because it wasn't running its own software.
Bit9, a company that provides security solutions to customers, said it was hacked and a number of its customers were targeted with malware. It admitted that it could have avoided the hack if it had implemented its own software properly on its network.

Bit9 is a "white listing" service provider with customers that range from government agencies to financial firms. White listing protects systems from being attacked by only allowing software from trusted vendors.

The hackers breached a system that Bit9 uses to digital sign its software so that its customers know its safe to run on their systems. They then signed malware using Bit9's digital signature and pushed it out to several of its customers.

"Due to an operational oversight within Bit9, we failed to install our own product on a handful of computers within our network," Chief Executive Patrick Morley wrote.



"As a result, a malicious third party was able to illegally gain temporary access to one of our digital code-signing certificates that they then used to illegitimately sign malware."

In 2011, a similar attack was made against RSA Security, when hackers stole information about its SecurID system. Two months after the breach, the hackers used the information to launch attacks against Lockheed Martin.

Tags: Bit9
Previous Next  

1 user comment

110.2.2013 13:01

Now this doesnt shock me at all.

Why most of these so called security firms that store your data dont tell you hi where running windows server 2003 or hi where running the latest windows server version which has been hack bent over a table patched and taken for a ride.

Even as a beta tester i had to test the 30 day trial for windows server 2003 within 5 minutes i had ti activated the timebomb removed replaced the driver cab from a legit version of windows xp pro and installed a service pack done

Comments have been disabled for this article.

Latest news

Sony suspends memory card sales because memory chips are simply not available Sony suspends memory card sales because memory chips are simply not available (28 Mar 2026 6:49)
Sony has announced that it is temporarily suspending the sale of memory cards used in mobile phones and digital cameras, among other things. The company states that the reason is problems with the availability of memory chips.
Austria plans to ban social media for under 14 year olds Austria plans to ban social media for under 14 year olds (28 Mar 2026 6:17)
Austria is planning to ban social media for children under 14. The reform aims to protect children from harmful effects and addictions, but at the same time, it is problematic from a privacy perspective.
TP-Link urges users to update their routers - several vulnerabilities patched TP-Link urges users to update their routers - several vulnerabilities patched (26 Mar 2026 1:56)
Serious security vulnerabilities have been discovered in several TP-Link router models, for which patches were released at the end of March 2026. The company urges users to update their router software immediately.
Google: The feared Q-Day is now expected to happen in 2029 Google: The feared Q-Day is now expected to happen in 2029 (25 Mar 2026 4:32)
Google has advanced its estimate of when current forms of encryption will become insecure. The moment is called Q-Day, or Quantum Day, when the computational power of quantum computers will be sufficient to break currently used encryptions.
OpenAI shuts down its AI video service Sora OpenAI shuts down its AI video service Sora (24 Mar 2026 6:28)
OpenAI has decided to shut down Sora, its AI video creator, just months after its release. The decision is due to issues such as copyright problems and the deepfake phenomenon.

News archive