Bookmark Article
Microsoft recently revoked over 200 certificates associated with the threat actor Vanilla Tempest, which were used to illegitimately sign malicious binaries in ransomware attacks. These certificates facilitated the distribution of fake Teams setup files that delivered the Oyster backdoor and enabled the deployment of Rhysida ransomware, as reported by the Microsoft Threat Intelligence team.
Want More Context? 🔎






