Hackers are using Stolen Nvidia certificates to authenticate malware

Hackers that broke into Nvidia’s network disclosed a stockpile of stolen data, including genuine code-signing certificates presently being exploited in the wild. Several security experts have obtained instances of suspicious software payloads that leverage at least two of Nvidia’s digital certificates, according to reports. In a tweet on Friday, threat expert Mehmet Ergene detected many malicious files signed with one of the Nvidia certificates.

The certificates were purportedly provided as a current data payload by criminal hackers linked to the Lapsus$ ransomware group. The organisation claimed to have gained access to Nvidia’s business network and a large internal data cache.

Even though one of the security certificates is old, dating back to 2014, it is still valid for Windows systems. As a result, attackers can utilise the certificate to make their malware payloads appear legitimate AMD software updates.

Nvidia has yet to reply to a request for comment on the certificates’ publication. Although researchers have released Yara rules that administrators may employ to detect and stop malicious downloads, many end users may still be vulnerable to malware payloads masquerading as Nvidia graphics card firmware or software upgrades.

“On February 23, 2022, NVIDIA became aware of a cybersecurity incident which impacted IT resources,” Nvidia said in a statement earlier this week. “Shortly after discovering the incident, we further hardened our network, engaged cybersecurity incident response experts, and notified law enforcement.”

Nvidia
NVIDIA certificates used to sign malware, Source: Florian Roth

Hackers are using Stolen Nvidia certificates to authenticate malware

Nvidia has stated that the network intrusion had no impact on its day-to-day operations and did not expect it to alter. Meanwhile, the Lapsus$ hackers have threatened to expose more Nvidia material, including technical insights about future GPU designs and graphics card platforms.

The group’s primary demand is that Nvidia releases its graphics card drivers as open-source projects, which would allow developers to optimise the hardware better and add new features.

Nvidia
NVIDIA certificates used to sign malware, Source: Florian Roth

The hacker group specifically requests that Nvidia eliminate its Lite Hash Rate (LHR) limits, limiting GPUs’ ability to compute the equations required to mine cryptocurrencies. Nvidia used LHR to reduce the gaming sector’s mining purchases of graphics cards, which resulted in a vast product shortage.

Also Read:

NVIDIA hackers have now targeted Samsung in their latest heist

Source

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.

More like this

NVIDIA RTX 5060 Ti: 14% Faster, Double the Performance Potential

NVIDIA RTX 5060 Ti: 14% Faster, Double the Performance...

Discover the NVIDIA GeForce RTX 5060 Ti: A game-changing mid-range GPU offering a 14% performance boost, 16GB...
SSI

Alphabet & Nvidia Invest in OpenAI Co-Founder’s Startup SSI...

In a major power play that’s sending ripples through the AI world, Alphabet and Nvidia have quietly...
NVIDIA RTX 5060 Ti Leak

NVIDIA RTX 5060 Ti Leak: FurMark Reveals Next-Gen Power

Discover the leaked NVIDIA RTX 5060 Ti specs from the FurMark database. Learn about performance, GDDR7 memory,...
DLSS 4 Multi Frame Generation Transforms Performance in The FINALS, Enotria, and Wild Assault

DLSS 4 Multi Frame Generation Transforms Performance in The...

The gaming world is witnessing a performance revolution this week as NVIDIA’s cutting-edge DLSS 4 with Multi...

GeForce NOW Adds 13 Games in April, Including South...

NVIDIA has announced the latest GeForce NOW game additions for this week and the remainder of April....

LATEST NEWS

AFC Womens Champions League : Queens of India Conquer the IWL 2024-25 — East Bengal Qualifies for AFC Women’s Champions League!

AFC Womens Champions League : The red and gold of Kolkata just turned golden for real — East Bengal FC's women’s team, lovingly...

Bad News for PBKS Fans—Lockie Ferguson Could Miss the Rest of IPL 2025

Are you ready for a rollercoaster ride through the latest drama in the Indian Premier League (IPL) 2025? Buckle up, cricket fans, because we’re...

WWE WrestleMania 41: Epic Showdowns Set to Electrify Las Vegas’ Allegiant Stadium

The wrestling world is buzzing with anticipation as WWE’s grandest spectacle, WrestleMania 41, prepares to take over Las Vegas in an unprecedented two-night extravaganza....

Trump’s Tech Tariff Twist: Apple and Big Tech Dodge a Bullet

Exclusive: How Apple, Nvidia, and tech giants escaped Trump’s 145% tariffs - a game-changing exemption that could reshape global manufacturing strategies. In a dramatic turn...

Featured