MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Compromised eScan update infrastructure distributes malicious software to customers

On 20 January 2026, unauthorized access to MicroWorld Technologies' eScan regional update infrastructure placed an unauthorized file in the legitimate software-distribution path and delivered it to a subset of customers during an approximately two-hour window. MicroWorld confirmed the update-infrastructure compromise and temporarily disrupted update services while isolating and rebuilding affected infrastructure. Morphisec's independent analysis characterized the delivered file as a multi-stage malicious payload that established persistence, modified eScan configuration and blocked further updates on compromised endpoints. MicroWorld disputed aspects of Morphisec's characterization and scope but confirmed the unauthorized distribution event.

70

Estimated severity

70 / 100

90

Source reliability

90 / 100

Approximate Date

20/01/2026

Targeted Company

MICROWORLD TECHNOLOGIES

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

India

IND

Other Affected Countries

No other affected countries reported

Target country

India

Affected countries

No information

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

No information

Impact types

Supply chain data integrity impactService degradation

Affected sectors

Technology & IT Services

Affected departments

Information Technology

Attack Profile

Attack types

Software supply chain compromiseSoftware update compromiseUnauthorized accessMalware

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.