lazarusholic

Everyday is lazarus.dayβ

3cx: lessons learned

2023-10-26, ReversingLabs
https://lascon2023.sched.com/event/1RE5e/3cx-lessons-learned
#3CXDesktopApp #Youtube

Contents

On April 1st, 3CX, a voice-over-IP (VoIP) software vendor, reported that it was the victim of a supply chain attack, shipping malicious code to thousands of 3CX customers, a number of which subsequently reported compromises of their internal systems. This is happening too often lately so we'll try to learn a little bit in hopes of reducing successful supply chain attacks going forward.

Solutions Architect and Honeybee Wrangler, ReversingLabs
Andy is a Solutions Architect and Honeybee Wrangler with ReversingLabs, a Startup that's tackling Software Supply Chain Security head-on. Founder of Denver OWASP, Boulder OWASP, and co-founder of the SnowFROC AppSec conference.