← Supply-Chain Attack Compendium

VSDC Video Editor

Incident Summary

VSDC download portal compromised

The official VSDC Video Editor website was compromised multiple times, and attackers replaced legitimate download links with trojanized installers carrying banking malware. The public source trail has thinned over time, but the pattern remains clear as a trusted media tool became a rotating delivery point.

Date
2018-11-01 to 2019-07-31
Category
Commercial
Target Surface
Distribution
Insertion Phase
distribution
Impact
Banking trojan
Cause
Website compromise

What Was Affected

Package VSDC Video Editor
LanguageC++
ComponentApplication
Artifact typebinary archive
Domain typeproject download host

Incident Context

Motive
Financial gain
Attribution
Cybercriminal
Transitive
No
User Impact
565000
Observed Duration
272 days

Evidence

Compromised Artifacts

  • Trojanized VSDC Video Editor installers downloaded from videosoftdev.com during 2018-2019.

Source Data

Source record: proprietary/vdsc/meta.yaml