Chinese cyber threat group UNC5337 is once again exploiting vulnerabilities in Ivanti remote access devices. This follows a year of exploits against Ivanti appliances, and Ivanti’s promise to secure its design. New vulnerabilities have been found in Ivanti’s Connect Secure (ICS), which also affects Policy Secure and Neurons for Zero Trust Access (ZTA) gateways. Another less severe vulnerability, yet to be exploited, that could allow privilege escalation on a targeted device has also been discovered.

North Korean Hackers Use Fake U.S. Companies to Spread Malware in Crypto Industry: Report
North Korean hackers reportedly set up shell companies in the US to penetrate the crypto sector and target developers via fake job offers, according to