3CX Telephony Supply Chain Attack Has Potential for Major Widespread Damage
Supply chain attack traces back to suspected North Korea state-backed hackers exploiting an open source vulnerability that allowed malware to be inserted into legitimate software updates (signed with valid 3CX certificates).
