Disc Soft Limited confirmed that DAEMON Tools Lite was compromised in a supply chain attack and has released a clean version of the software.
Disc Soft Limited, the developer of DAEMON Tools Lite, has acknowledged a breach that resulted in the distribution of trojanized versions of its popular disc emulation software.
The company confirmed that attackers injected malware into the software during a supply chain compromise. Users who downloaded affected versions may have received malicious code alongside the legitimate application.
Response and Recovery
In response to the incident, Disc Soft Limited released a new malware-free version of DAEMON Tools Lite. The company has not disclosed specific details about the timing of the breach, how many users were affected, or the exact nature of the injected malware.
What Users Should Do
Users of DAEMON Tools Lite should update to the latest version immediately. Those running older versions should verify their installation status and consider reinstalling from the official sources.
Supply Chain Attacks
This incident joins a growing list of supply chain attacks targeting software vendors. By compromising legitimate applications, attackers gain access to large numbers of users while evading initial detection. Similar attacks have affected major software publishers in recent years, highlighting the vulnerability of the software distribution chain.
Context
DAEMON Tools Lite is widely used for creating virtual disc drives and mounting disc image files. Its popularity makes it an attractive target for attackers seeking broad distribution of malware.
Disc Soft Limited has not released a detailed technical analysis of the breach or remediation steps taken to prevent future incidents. Users should monitor the company's official channels for additional guidance and security updates.
Major artificial intelligence companies have issued urgent warnings that a significant cybersecurity threat could materialize within months. The alert comes as hackers continue targeting critical infrastructure across the United States.
Authorities have arrested two alleged members of TeamPCP, a hacking group responsible for infecting over 1,000 organizations through supply-chain attacks.
A Georgia police officer used Flock surveillance technology to track the movements of his ex-partner and another officer after their affair ended, according to internal investigation records.
McKesson, a major healthcare and pharmaceutical distributor, confirmed a cybersecurity incident involving unauthorized access to third-party applications. Extortion group ShinyHunters claims responsibility for stealing 284 million patient data records.