Fox Tempest, a financially-motivated threat group, allowed ransomware operators and other cybercriminals to slip malware-laced software past security controls.
A view of Mimecast’s North American offices. The email security provider said a “sophisticated threat actor” had breached its software certificate (Mimecast/Wikimedia Commons).
The mistake means that hackers could decrypt the key and use the certificate, a means of digital authentication, to monitor victims’ traffic and launch main-in-the-middle attacks.