DAEMON TOOLS BREACHED, MALWARE-FREE VERSION RELEASED
SECURITY DESK■ 2 MIN READ
WED, MAY 6, 2026■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
Disc Soft Limited confirmed that DAEMON Tools Lite was compromised in a supply chain attack and has released a clean version of the software.
Disc Soft Limited, the developer of DAEMON Tools Lite, has acknowledged a breach that resulted in the distribution of trojanized versions of its popular disc emulation software.
The company confirmed that attackers injected malware into the software during a supply chain compromise. Users who downloaded affected versions may have received malicious code alongside the legitimate application.
Response and Recovery
In response to the incident, Disc Soft Limited released a new malware-free version of DAEMON Tools Lite. The company has not disclosed specific details about the timing of the breach, how many users were affected, or the exact nature of the injected malware.
What Users Should Do
Users of DAEMON Tools Lite should update to the latest version immediately. Those running older versions should verify their installation status and consider reinstalling from the official sources.
Supply Chain Attacks
This incident joins a growing list of supply chain attacks targeting software vendors. By compromising legitimate applications, attackers gain access to large numbers of users while evading initial detection. Similar attacks have affected major software publishers in recent years, highlighting the vulnerability of the software distribution chain.
Context
DAEMON Tools Lite is widely used for creating virtual disc drives and mounting disc image files. Its popularity makes it an attractive target for attackers seeking broad distribution of malware.
Disc Soft Limited has not released a detailed technical analysis of the breach or remediation steps taken to prevent future incidents. Users should monitor the company's official channels for additional guidance and security updates.
■ MORE FROM THE SECURITY DESK
Cybercriminals have transformed DDoS attacks into a polished, commercialized service complete with pricing tiers, customer support, and reseller programs. The DDoS-as-a-Service market has evolved from basic tools into sophisticated attack platforms.
3H AGO— Industry Desk
Microsoft faced backlash after threatening a security researcher with criminal investigation, reigniting debate over software vulnerability disclosure practices and corporate responsibility.
3H AGO— Security Desk
Google is deploying Device Bound Session Credentials (DBSC) to all Chrome users, a security feature designed to prevent account takeovers by protecting session cookies from theft.
3H AGO— Industry Desk
Dutch authorities have dismantled a major botnet comprising 17 million infected devices and seized over 200 servers hosting the operation at a local provider.
3H AGO— Security Desk