A new phishing campaign targeting US healthcare and cryptocurrency sectors is exploiting vulnerabilities in remote support tool, ConnectWise ScreenConnect. Researchers found fraudulent websites that mimic cryptocurrency platforms and healthcare organizations, which, when interacted with, initiate the download of ScreenConnect client files, creating a potential entry point for hackers. Despite no detected active communication between servers and clients, the potential for data extraction or malware deployment remains high.

North Korean Hackers Use Fake U.S. Companies to Spread Malware in Crypto Industry: Report
North Korean hackers reportedly set up shell companies in the US to penetrate the crypto sector and target developers via fake job offers, according to