Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Connecting to Turn Signing Signing Code Screenconnect with -wit security risks
Global Security

Connecting to Turn Signing Signing Code Screenconnect with -wit security risks

AdminBy AdminJune 12, 2025No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


June 12, 2025Red LakshmananVulnerability / safety software

Connectwise revealed that it plans to turn the digital code signing certificates used to sign the executable Files Screenconnect, Connectwise and Connectwise remote monitoring and management (RMM) from the security issues.

Campaign – Note This does it “because of the concern caused by the third researcher on how Screenconnect did with some configuration data in previous versions.”

While the company did not publicly specify the nature of the problem, it shed more light in non -public FAQ only available to its customers (and later shared on Reddit) –

Concerns are related to Screenconnect using the ability to store configuration data in an affordable installation area that is not signed but is part of the installation. We use this ability to transfer configuration information (between agent and server), such as the URL where the agent should call back without acknowledging the invalid signature. However, our software uses an unsigned area and others to set up when combined with the ability to solve remote control it can create an uncertain design according to today’s security standards.

In addition to issuing new certificates, the company said it released an update designed to improve how the Screenconnect is managed by configuration data.

Cybersecurity

It is expected that the recall of digital certificates will take place until June 13 at 8:00 pm (June 14 12am). Connectwise emphasized that the problem does not involve compromise of its systems and certificates.

It is worth noting that it is automatically connected, already during the process of upgrading certificates and agents in all their cloud instances of automation and RMM.

However, those who use indoors Screenconnect or Automate are required to upgrade until the latest build and confirm that all agents are updated before the cut off date to avoid possible interruptions.

“We have already planned to improve the management and hardening management, but these efforts are now being implemented at an accelerated term,” said Connectwise. We understand that this can create problems and strive to support you through the transition. “

Development occurs only a few days after the company disclosed The fact that the suspected nation-state actor threatened his systems and touched upon a small number of his customers using the CVE-2025-3935 for the ViewState injection code.

It also comes when attackers are increasingly relying on legitimate RMM software like Screenconnect and others Get a hidden, steady remote accessEffectively allowing them to combine with normal activity and fly under the radars.

This attack method, called toilet land (Lotl), allows you to steal the inherent software capabilities for remote access, file transfer and command execution.

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025

Apple Zero Click’s downside in reports to spy on journalists using spyware Paragon software

June 13, 2025

Both Vextrio and affiliates control the global network

June 12, 2025

How to Decide Safety Expanding

June 12, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025

Apple Zero Click’s downside in reports to spy on journalists using spyware Paragon software

June 13, 2025

Both Vextrio and affiliates control the global network

June 12, 2025

How to Decide Safety Expanding

June 12, 2025

The new tokenbreak attack combines AI moderation with a one -sided character change

June 12, 2025

AI AI agents work on secret accounts – learn how to fasten them in this webinar

June 12, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.