June 1, 2023, 4:15 p.m. | BrianKrebs

Krebs on Security krebsonsecurity.com

Code-signing certificates are supposed to help authenticate the identity of software publishers, and provide cryptographic assurance that a signed piece of software has not been altered or tampered with. Both of these qualities make stolen or ill-gotten code-signing certificates attractive to cybercriminal groups, who prize their ability to add stealth and longevity to malicious software. This post is a deep dive on "Megatraffer," a veteran Russian hacker who has practically cornered the underground market for malware focused code-signing certificates since …

774748@gmail.com akafitis@gmail.com assurance bear breadcrumbs certificates code code signing certificates constella intelligence cybercriminal domaintools.com featar24 fitis flashpoint glavmed identity intel 471 konstantin evgenievich fetisov malware megatraffer ne'er-do-well news o.r.z. piece prize sign signing software spamit spampage@yandex.ru stealth stolen

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Cybersecurity Engineer

@ Booz Allen Hamilton | USA, VA, Arlington (1550 Crystal Dr Suite 300) non-client

Invoice Compliance Reviewer

@ AC Disaster Consulting | Fort Myers, Florida, United States - Remote

Technical Program Manager II - Compliance

@ Microsoft | Redmond, Washington, United States

Head of U.S. Threat Intelligence / Senior Manager for Threat Intelligence

@ Moonshot | Washington, District of Columbia, United States

Customer Engineer, Security, Public Sector

@ Google | Virginia, USA; Illinois, USA