State-sponsored North Korean hackers are increasingly targeting the IT sector, including software development companies and institutions hiring IT employees. Other cybersecurity news includes Microsoft’s announcement of an AI bug bounty programme, the exploitation of a Cisco IOS XE zero-day, and Google’s enhanced code-level scanning for Play Protect. Additionally, reports highlight the use of fake browser updates for malware delivery and cryptojackers targeting exposed Jupyter Notebooks.

The NCSC wants developers to get serious on software security
The NCSC’s new Software Security Code of Practice has been praised by cyber professionals as a significant advancement in enhancing software supply chain security.