Supply Chain Incident
Linux Mint ISO distribution site compromise
Attackers modified Linux Mint download infrastructure so some users received a backdoored ISO image instead of the legitimate distribution image.
ConfidenceHigh
Evidence LevelVendor
Attack StageDistribution Compromise
Source Artifact DivergenceYes
Affected Packages
No structured records.
Affected Releases
No structured records.
Repositories
No structured records.
Organizations
Maintainers
No structured records.
Threat Actors
No structured records.
Campaigns
No structured records.
Build Systems
No structured records.
Distribution Channels
- Linux Mint download site
Compromised Accounts
No structured records.
Connected Entities
- Linux Mint Organization
- Linux Mint download site Distribution Channel
References
- Beware of hacked ISOs if you downloaded Linux Mint on February 20th Linux Mint · 2016-02-21