Elsevier Evolve, ClinicalPharmacology, and GSDD APIs Hijacked: LAPSUS$ Redirect Campaign
LAPSUS$ hijacked Elsevier education and clinical APIs, redirecting users to extortion splash pages.
Sorami Consulting reports that users and systems connecting to Elsevier Evolve, Sherpath, and ClinicalPharmacology are being redirected to extortion splash pages tied to LAPSUS$. The redirects point to domains including lapsus.ar.io and lapsus.bz. Public discussion describes nursing and medical students locked out of exams and simulation charting. The report also says GSDD APIs were hijacked in the same campaign.
75