The GoldenEyeDog cybercrime group compromised DigiCert support staff in April to obtain extended validation code-signing certificates. DigiCert revoked 60 certificates, including 27 linked to the threat actor, after they were used to sign Zhong Stealer malware. This attack specifically targeted financial organizations, highlighting risks in supply chain trust and certificate management.

Relevant URL: https://thehackernews.com/2026/07/goldeneyedog-subgroup-linked-to.html