France
FRA
On 9 April 2026, attackers compromised a backend component used by CPUID's official website and replaced legitimate download destinations for CPU-Z, HWMonitor, HWMonitor Pro and PerfMonitor 2 with attacker-controlled packages. The trojanized downloads combined legitimate software components with a malicious DLL that ultimately deployed STX RAT. Kaspersky observed malicious redirects through 10 April and identified more than 150 infections, including organizations in retail, manufacturing, consulting, telecommunications and agriculture, with most observed infections in Brazil, Russia and China. Although CPUID's original signed binaries were not modified, compromise of the trusted vendor download path created a direct software-supply-chain data-integrity impact.
Estimated severity
74 / 100
Source reliability
93 / 100
Approximate Date
09/04/2026
Targeted Company
CPUID
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
France
FRA
Brazil
BRA
Russian Federation
RUS
Colombia
COL
Chile
CHL
Turkey
TUR
Spain
ESP
Germany
DEU
Italy
ITA
China
CHN
Target country
France
Affected countries
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Please rotate your phone