Over 18k devices worldwide have had sensitive data stolen due to intrusions involving a trojanized XWorm RAT builder. The attackers used the aliases “@shinyenigma” and “milleniumrat” to target amateur threat actors. The altered XWorm RAT builder enables data theft, registry alteration, and virtualization checks via Telegram bot tokens and API calls. The attack follows the usage of XWorm by Russian hackers in Ukraine-targeted attacks.
Cybersecurity in healthcare demands resiliency, not reactivity
The inevitable cyber threats on patients’ data necessitate a change in healthcare organizations’ approach to cybersecurity. A shift from solely defensive measures to cyber-resilience measures