The US Food and Drug Administration (FDA) has warned that Chinese-made patient monitor devices, Contec CMS8000 and its relabelled version, Epsimed MN-120, have a built-in backdoor leaking patient data to an unauthorised remote server, which can also execute unauthorised code on the device. These affected monitors are used in various medical settings across the US and Europe.

Clone, Compile, Compromise: Water Curse’s Open-Source Malware Trap on GitHub
The Water Curse group, a recently identified threat actor, has been using GitHub as a platform to deliver weaponized repositories. The group has a diversified