Threat actors have increasingly used validly signed ConnectWise software since March 2025 to distribute their own malware, exploiting lax code signing practices. This campaign highlights the critical need for improved detection strategies among security vendors and a reevaluation of trust in software signatures widely relied upon by organizations.
Source: GData Security
China-Nexus Backdoor 'LapDogs' Targets Linux SOHO Devices
A newly uncovered cyber-espionage campaign dubbed "LapDogs" is exploiting small office/home office (SOHO) devices running Linux to create covert relay infrastructures. The campaign, attributed to China-linked actors, leverages operational relay boxes (ORBs), enabling threat actors to remain hidden while targeting hardware and firmware from popular vendors—signaling a worrying evolution in targeted attacks against everyday connected devices.
Source: Help Net Security
US Braces for Iranian Cyber Retaliation After Escalation in Middle East
US officials warn of a likely increase in Iranian cyberattacks following recent American involvement in strikes on Iran's nuclear sites. With a history of targeting US digital infrastructure, Iranian groups are expected to intensify operations against government and private networks, underscoring the urgent need for bolstered national cyber preparedness.
Source: SecurityWeek
Quantum Risk Is Here: Organizations Urged to Prepare for Post-Quantum Encryption Threats
The Cyber Threat Alliance warns that quantum computing is already influencing the threat landscape, urging organizations to begin transitioning now to quantum-resistant encryption. The new report highlights that waiting to address these risks leaves data that is "secure now, broken later," emphasizing proactive planning and risk assessment as immediate priorities for IT and security leaders.
Source: Help Net Security
SparkKitty Trojan Emerges in Official App Stores, Stealing User Photos
SparkKitty, a newly identified Trojan spy and a variant of SparkCat, has made its way onto both the Apple App Store and Google Play, spreading via rogue websites and official channels. The malware siphons images from victims’ photo galleries, raising alarms about persistent threats to mobile device security—even on major app marketplaces.
Source: SecureList
Cyberattacks on Medical Devices Force Hospitals Into Crisis Mode
A recent survey found that 22% of healthcare organizations suffered cyberattacks directly impacting medical devices, with three-quarters of these incidents disrupting patient care and nearly a quarter resulting in emergency transfers. The findings show that cybersecurity for operational technology (OT) in healthcare is now a matter of patient safety, not just an IT or compliance issue.
Source: Help Net Security
71% of New Hires Click on Phishing Emails Within Three Months
A new report reveals that new employees are 44% more likely to fall for phishing attacks than their more seasoned counterparts, with 71% clicking on phishing emails within their first 90 days. The high susceptibility is attributed to unfamiliarity with company security protocols, underscoring the need for immediate and robust onboarding-focused security education.
Source: Help Net Security
You May Also Be Interested In...