3CX supply chain attack was the result of a previous supply chain attack, Mandiant saysCyberScoop·Apr 20, 13:10 UTC · Apr 20, 2023Exploit / PoC in the wild60
3CX breach linked to previous supply chain compromiseHelp Net Security·Apr 24, 00:00 UTC · Apr 24, 2023Data breach160
Mandiant: 3CX supply-chain attack began with another supplyThe Record·Apr 20, 13:50 UTC · Apr 20, 2023Malware in the wild60
More evidence links 3CX supply-chain attack to North Korean hacking groupThe Record·Mar 31, 12:21 UTC · Mar 31, 2023Data breach in the wild60
'They outsmarted us.' 3CX CEO acknowledges mistakes handling potential supply chain cyberattackCyberScoop·Mar 31, 00:04 UTC · Mar 31, 2023Exploit / PoC in the wild60
Lazarus X_TRADER Hack Impacts Critical Infrastructure Beyond 3CX BreachThe Hacker News·Apr 24, 15:44 UTC · Apr 24, 2023Threat actor60
3CX Hackers Also Compromised Critical Infrastructure FirmsInfosecurity Magazine·Apr 24, 09:30 UTC · Apr 24, 2023Data breach60
N.K. Hackers Employ Matryoshka Doll-Style Cascading Supply Chain Attack on 3CXThe Hacker News·Apr 22, 06:56 UTC · Apr 22, 2023Data breachCVE-2022-0609160
Energy sector orgs in US, Europe hit by same supply chain attack as 3CXThe Record·Apr 21, 20:51 UTC · Apr 21, 2023Data breach60
North Korean Supply Chain Threat is Booming, UK and South Korea WarnInfosecurity Magazine·Nov 23, 12:30 UTC · Nov 23, 2023Exploit / PoC60
At least 2 critical infrastructure orgs breached by North Korea-linked hackers behind 3CX attackSecurity Affairs·Apr 22, 15:02 UTC · Apr 22, 2023Data breach60
North Korean hackers linked to 3CX supplyThe Record·Apr 11, 17:37 UTC · Apr 11, 2023Malware in the wild60
Lazarus Group Targets macOS in Supply Chain AssaultInfosecurity Magazine·Sep 11, 17:00 UTC · Sep 11, 2023Threat actor60
Week in review: 3CX supply chain attack, ChatGPT data leakHelp Net Security·Apr 2, 00:00 UTC · Apr 2, 2023Ransomware in the wildCVE-2022-47986CVE-2023-2352960
North Korean Hackers Use Trojanized 3CX DesktopApp in Supply Chain AttacksInfosecurity Magazine·Mar 30, 17:30 UTC · Mar 30, 2023Malware55
Supply chain cyberattack with possible links to North Korea could have thousands of victims globallyCyberScoop·Mar 30, 13:31 UTC · Mar 30, 2023Exploit / PoC in the wild60
Threat Source newsletter (April 27, 2023) — New Cisco Secure offerings and extra security from DuoCisco Talos·Apr 27, 18:00 UTC · Apr 27, 2023Exploit / PoCCVE-2023-2735060
Security Affairs newsletter Round 416 by Pierluigi PaganiniSecurity Affairs·Apr 23, 07:51 UTC · Apr 23, 2023Ransomware in the wild60
CISO's Expert Guide To AI Supply Chain AttacksThe Hacker News·Nov 11, 11:58 UTC · Nov 11, 2025Ransomware60
Cybercriminals harness AI for new era of malware developmentHelp Net Security·Mar 1, 00:00 UTC · Mar 1, 2024Malware55
Lazarus Group Malware Targets Legitimate SoftwareInfosecurity Magazine·Oct 30, 17:00 UTC · Oct 30, 2023Malware55
Reflecting on supply chain attacks halfway through 2023Cisco Talos·Aug 10, 18:00 UTC · Aug 10, 2023Ransomware60
Week in review: PaperCut vulnerabilities, VMware fixes critical flaws, RSA Conference 2023Help Net Security·Apr 30, 00:00 UTC · Apr 30, 2023VulnerabilityCVE-2023-27524CVE-2023-20869CVE-2023-20870+4 CVEs60
Week in review: Microsoft patches zero-day, Apple security updates, HashiCorp Vault vulnerabilityHelp Net Security·Apr 18, 11:58 UTC · Apr 18, 2023Exploit / PoC in the wildCVE-2023-28252CVE-2023-28205CVE-2023-28206+1 CVEs160
Security Affairs newsletter Round 414 by Pierluigi PaganiniSecurity Affairs·Apr 9, 18:35 UTC · Apr 9, 2023Ransomware in the wild60
Week in review: Western Digital network security incident, QNAP vulns, Patch Tuesday forecastHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2023Vulnerability in the wildCVE-2023-26360CVE-2023-26359160
Endpoint malware attacks decline as campaigns spread widerHelp Net Security·Apr 23, 13:42 UTC · Apr 23, 2026Malware55
‘It reads like a spy novel’: $280 million theft from Drift involved North Korean fake companies, cutoutsThe Record·Apr 10, 17:35 UTC · Apr 10, 2026Exploit / PoC60
We moved fast and broke things. It’s time for a change.CyberScoop·Feb 2, 11:00 UTC · Feb 2, 2026Exploit / PoC60
Starbucks, UK grocers impacted by ransomware attack on Blue YonderCyberScoop·Nov 26, 20:35 UTC · Nov 26, 2024Ransomware in the wild60
Lineaje secures $20 million in funding to address software supply chain issuesHelp Net Security·Jul 31, 00:00 UTC · Jul 31, 2024Vulnerability55
Courtroom recording software compromised with backdoor installerThe Record·May 23, 19:34 UTC · May 23, 2024MalwareCVE-2024-497860
Lineaje OSM improves software supply chain securityHelp Net Security·May 2, 00:00 UTC · May 2, 2024Vulnerability55
Sisense breach exposes customers to potential supply chain attackCyberScoop·Apr 11, 18:56 UTC · Apr 11, 2024Ransomware in the wild60
N. Korean Hackers Distribute Trojanized CyberLink Software in Supply Chain AttackThe Hacker News·Dec 1, 07:21 UTC · Dec 1, 2023MalwareCVE-2023-4279360
North Korean supply chain attacks prompt joint warning from Seoul and LondonThe Record·Nov 24, 13:10 UTC · Nov 24, 2023Ransomware60
Kaspersky Security Bulletin: APT predictions 2024Kaspersky Securelist·Nov 14, 10:00 UTC · Nov 14, 2023AdvisoryCVE-2020-35730CVE-2020-12641CVE-2021-44026+1 CVEs60
A cascade of compromise: unveiling Lazarus' new campaignKaspersky Securelist·Oct 27, 05:41 UTC · Oct 27, 2023Threat actor160
Previously unknown hacking group targets Hong Kong organizations in supply chain cyberattackCyberScoop·Aug 22, 13:14 UTC · Aug 22, 2023Ransomware in the wild60