The Lazarus Group, a North Korean cyber threat entity, is exploiting a known vulnerability in ManageEngine products, targeting healthcare and internet infrastructure in Europe and the US. The Health Sector Cybersecurity Coordination Center (HC3) has urged organizations to update their systems. This marks the third documented campaign by Lazarus in less than a year. The group is deploying a remote access trojan (RAT) known as QuiteRAT and a new malware tool called CollectionRAT.

Android spyware hidden in mapping software targets Russian soldiers
New Android malware targeting Russian military personnel has been discovered in a fake version of Alpine Quest, a mapping app often used by Russian soldiers.