Microsoft takes down ‘Fox Tempest’ cybercrime service, which used legitimate platforms to hide dangerous malware


  • Microsoft disrupts Fox Tempest operation that abused Azure Artifact Signing to issue fraudulent code-signing certificates
  • The group created over 1,000 certificates and hundreds of Azure tenants, allowing malware campaigns to bypass security checks
  • Lawsuits were brought against Fox Tempest and Vanilla Tempest, whose services supported major malware and ransomware distribution

Microsoft has taken down a malicious service that offered digitally signed certificates to hackers and has launched a lawsuit against the perpetrators of the operation.

In its report, the company said a threat actor known as Fox Tempest used Azure Artifact Signing to create temporary certificates. These certificates made it possible to sign the malware as legitimate software, bypass antivirus protection and compromise the victim’s devices.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top