Researchers have confirmed that the GoldenEyeDog subgroup exploited the DigiCert breach to acquire legitimate code-signing certificates, a critical capability for conducting supply chain attacks. This development connects multiple threat actors including APT-Q-27, Black Basta, and Rhysida to a coordinated campaign targeting finance, gambling, gaming, and Web3 sectors.