North Korea-linked threat group APT37, also known as ScarCruft, Red Eyes, Erebus, and Reaper, has been behind highly targeted attacks using the Dolphin backdoor, which has evolved into more advanced versions since being first identified in April 2021, according to BleepingComputer.
Novel npm malware discovered by JFrog researchers has been exploiting unexpected npm command line interface tool behavior to bypass the detection of security systems, reports The Hacker News.
Colombian healthcare provider Keralty, which has a network of hospitals and medical centers in the U.S., Latin America, Spain, and Asia, had its company and subsidiary websites and operations disrupted by a RansomHouse ransomware attack on Sunday, reports BleepingComputer.
Guatemala's Ministry of Foreign Affairs has not provided any details regarding a ransomware attack earlier this year amid the ongoing investigation into the incident, according to The Record, a news site by cybersecurity firm Recorded Future.
Reuters reports that Medibank, the largest health insurer in Australia, has disclosed further leaks of medical records stolen from a massive cyberattack in October, amid media reports that attackers announced in a blog post that leaks of data from nearly 10 million of the insurer's current and former clients have been completed.
BleepingComputer reports that organizations around the world are being increasingly attacked by a ransomware operation that has recently rebranded as Trigona.
Suspected Chinese cyberespionage operation UNC4191 has been leveraging USB devices in an effort to compromise targets in Southeast Asia, reports The Record, a news site by cybersecurity firm Recorded Future.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.