TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

KeePass trojanised in advanced malware campaign

5 pointsby melicerte2 days ago

1 comment

Ukv2 days ago
&gt; signed version of the open-source password manager KeePass [...] KeePass’s actual source code was altered [...] risks of trusted software being hijacked<p>To be clear, as far as I&#x27;m able to tell from the report, the actual KeePass is safe and has not been infiltrated&#x2F;compromised. The malicious version was from malvertising&#x2F;typosquatting sites, and signed by random compromised certifications - not by the KeePass developer.<p>I guess what they&#x27;re intending to emphasize is that the malware authors recompiled KeePass to add their malware as opposed to just packaging it alongside KeePass in an installer, but it did initally sound like something far worse had happened.
评论 #43962763 未加载