HackRead reports that spear-phishing attacks spreading the RokRAT tool have been deployed by North Korean state-sponsored threat group ScarCruft, also known as APT37, against South Korean academics, former government officials, and researchers as part the HanKook Phantom cyberespionage campaign.
Infosecurity Magazine reports that cryptocurrency firms Chainalysis, Binance, OKX, and Tether have joined forces to seize nearly $47 million worth of cryptocurrency stolen by a Southeast Asian romance baiting operation.
HackRead reports that more than $1 million worth of cryptocurrency has been stolen by a newly emergent task scam cluster involving a network of websites spoofing leading companies.
SiliconANGLE reports that over 900 organizations across various sectors, most of which are in the U.S., have been subjected to attacks spreading a trojanized version of the ConnectWise ScreenConnect remote monitoring and management tool as part of an ongoing campaign.
U.S.-based supply chain-critical manufacturing organizations including those involved in machinery, semiconductors, pharmaceuticals, biotechnology, and consumer goods have been primarily targeted with the MixShell in-memory malware as part of the sophisticated ZipLine social engineering campaign, which also sought to compromise similar entities in Switzerland, Japan, and Singapore, The Hacker News reports.