ATLAS · LIVE
ATLAS INDEX
Δ 24H
ACTIVE SOURCES20
HOTSPOTS20
TIME21:39:49 UTC
← All briefs
HIGHCyber IntelligenceThursday, May 7, 2026

DAEMON Tools trojanized in supply chain breach, patched version released

Disc Soft confirms malware was inserted into its popular disc imaging software; users urged to update immediately to clean build.

Disc Soft Limited has confirmed that DAEMON Tools Lite, a widely used disc imaging utility, was compromised in a supply chain attack. The company released a malware-free version following discovery that attackers had trojanized the software.

The breach represents a classic supply chain compromise: adversaries inserted malicious code into legitimate software distributed through official channels. Users who downloaded affected versions unknowingly installed both the intended application and attacker-controlled malware. Disc Soft has not disclosed the attack timeline, the number of affected downloads, or the malware's capabilities.

DAEMON Tools has been installed on hundreds of millions of systems globally over two decades, making it a high-value target for supply chain operators. The software's legitimate function—mounting virtual drives and managing disc images—grants it elevated system access, a feature attackers can exploit for persistence and lateral movement.

The rest of this brief is inside the platform

Continue reading. Free.

A free Atlas account unlocks the full briefing, the co-analyst, daily delivery to your inbox, and a sector-personalised feed.

Full brief
Implications, sources, methodology
Co-Analyst
Ask follow-ups on every brief
Sector feed
Briefs filtered to what matters to you
Implications
  • 01DAEMON Tools users face potential compromise; immediate update required to remove malware.
  • 02IT teams must audit systems for indicators of compromise from trojanized versions.
  • 03Software vendors under renewed pressure to harden build pipelines and signing infrastructure.
  • 04Incident underscores persistent risk of supply chain attacks on widely deployed utilities.
Source
BleepingComputer
https://www.bleepingcomputer.com/news/security/daemon-tools-devs-confirm-breach-release-malware-free-version/
Brief is editorial commentary by Atlas Intelligence based on the cited public reporting. Atlas does not reproduce source text. Verify primary source before action.
#supply chain attack#malware#daemon tools#software compromise#incident response
Related Briefs