Index / Techniques / Code-Signing Abuse
Technique Record · T1553.002

Code-Signing Abuse

Publicly-reported instances of Code-Signing Abuse bypassing endpoint security products. Maintained on the same basis for every technique in the Index.

8
recorded bypasses
4
products affected

Products recorded as bypassed by Code-Signing Abuse

ProductEntriesHigh-confidenceMost recent
Microsoft 552026-05-23
Apple 112023-10-25
DigiCert 112026-05-04
Kaseya 112024-05-10

All entries

ProductConfidenceDisclosedSource
Microsoft high 2026-05-23www.positioniseverything.net record →
Microsoft high 2026-05-20cybersecuritynews.com record →
DigiCert high 2026-05-04cyberinsider.com record →
Microsoft high 2025-06-19undercodetesting.com record →
Microsoft high 2024-08-06www.elastic.co record →
Kaseya high 2024-05-10purplesec.us record →
Microsoft high 2024-04-26vsociety.medium.com record →
Apple high 2023-10-25github.com record →

Counts reflect distinct publicly-reported events on record; absence of an entry means no confirmed public report is on file.