The HHS Health Sector Cybersecurity Coordination Center (HC3) alerted the healthcare sector regarding two new cybersecurity vulnerabilities in Progress Software’s MOVEit managed file transfer platform, which differ from those exploited by the Clop ransomware group in 2023. The software owner has issued patches, but HC3 warns that the exploit code is public and pending threats are targeting the vulnerability, urging healthcare organisations to fast-track the patching process.
PlushDaemon APT Targeted South Korean VPN Software
The previously undocumented APT group, PlushDaemon, carried out a 2023 cyber espionage operation against South Korean VPN software. The threat was detected by ESET, who