Windows, macOS, and Linux systems have been targeted with supply chain attacks by a new malicious Python package in PyPi that deploys backdoors and Cobalt Strike beacons.
North Korean state-sponsored hacking operation Lazarus has been targeting VMware Horizon servers in malware attacks exploiting the Log4Shell remote code execution flaw, tracked as CVE-2021-44228, reports BleepingComputer.
Ransomware-related vulnerabilities have increased by 7.6% between the last quarter of 2021 and the first quarter of 2022, with 19 of the 22 new security flaws associated with the Conti ransomware gang, which had expressed support for Russia amid the ongoing war against Ukraine during the previous quarter, VentureBeat reports.
Suspected Russian hacking group Wizard Spider has been operating with a significant arsenal of compromised devices and a complicated but highly distributed workflow, according to ZDNet.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.