News North Korean hackers break into US software firms in latest supply chain hackSpear-phishing remains tactic of choice as Lazarus group targets JumpCloud systems and GitHub users The North Korean hacking outfit Lazarus broke into an American enterprise software company, likely aiming to compromise a large number of systems in subsequent attacks, cybersecurity firm SentinelLabs reported on Thursday. News about the sophisticated supply chain hack of JumpCloud came just days after software hosting provider GitHub identified a highly targeted social engineering campaign linked to Lazarus that appeared to pursue similar goals. GitHub identified the actor as Jade Sleet, a moniker used by Microsoft Threat Intelligence. The group was previously known as TraderTraitor by the U.S. Cybersecurity and Infrastructure Security Agency. [/p © Korea Risk Group. All rights reserved. |