CrowdStrike와 Google이 GlassWorm 악성코드의 공격 인프라를 차단했다.
CrowdStrike는 Google, Shadowserver Foundation과 협력하여 GlassWorm과 관련된 모든 명령 및 제어 채널을 동시에 마비시켰다고 발표했다. GlassWorm은 2025년 초부터 소프트웨어 개발자를 목표로 하는 지속적인 소프트웨어 체인 공격 캠페인이다. 이 악성 코드 운영자들은 악성 패키지와 확장을 통해 개발자들을 시스템적으로 겨냥해 왔다.
CrowdStrike and Google disrupt the attack infrastructure of the GlassWorm malware.
CrowdStrike, in collaboration with Google and the Shadowserver Foundation, announced the simultaneous takedown of all command-and-control channels linked to GlassWorm. This persistent software supply chain campaign has targeted developers since early 2025, employing malicious packages and extensions. The operators of GlassWorm have systematically targeted software developers to compromise their systems.