The Cybersecurity and Infrastructure Security Agency (CISA) has added a serious NextGen Healthcare Mirth Connect remote code execution vulnerability to its Known Exploited Vulnerability Catalog. The vulnerability, which affects data interoperability within healthcare systems, enables a threat actor to fully compromise a vulnerable Mirth Connect Server without requiring credentials. Many industry organizations have neglected to upgrade their systems despite a patch being available, leaving them vulnerable to exploitation.

SuperCard X Android malware use stolen cards in NFC relay attacks
Android devices are being targeted by a new malware-as-a-service (MaaS) platform, SuperCard X. The malware uses NFC relay attacks to conduct fraudulent point-of-sale and ATM