TLDR:
- North Korean hackers target macOS users with malware spread through Microtalk.
- Bassett Furniture halts manufacturing operations after a ransomware attack.
Every week, there are new cybersecurity incidents and breaches around the world. In the latest roundup, North Korean hackers targeted macOS users with a new variant of their BeaverTail malware, spreading it through a fake version of Microtalk. Cybersecurity researcher Patrick Wardle noted that the hackers trick victims into downloading the infected software by posing as recruiters offering job interviews. The malware steals data and deploys additional malicious payloads on the victim’s device. Additionally, Bassett Furniture Industries recently experienced a ransomware attack, leading to the halt of manufacturing operations. Unauthorized access to the company’s systems encrypted data, disrupting business operations. While retail stores remain open, order fulfillment has been impacted, with a 17% drop in revenue reported for the second quarter of 2024.
Full Article:
Every week, Information Security Media Group compiles a list of cybersecurity incidents and breaches from around the world. This week, the roundup includes a focus on North Korean hackers targeting macOS users and a ransomware attack on Bassett Furniture Industries.
North Korean state-sponsored hackers have been targeting macOS users with a new variant of the BeaverTail malware, which is spread through a malicious version of the video-calling service Microtalk. Cybersecurity researcher Patrick Wardle uncovered that the hackers are tricking victims into downloading the infected software by posing as recruiters offering job interviews. Once installed, the malware steals data and deploys additional malicious payloads, including InvisibleFerret. Despite relying heavily on social engineering tactics, Wardle noted that the hackers exhibit expertise in targeting macOS systems.
On the other hand, Bassett Furniture Industries recently experienced a ransomware attack that led to the halt of manufacturing operations. The company discovered unauthorized access to its systems, resulting in the encryption of data files. While retail stores and the e-commerce platform remain operational, the attack has affected order fulfillment and has led to a 17% drop in revenue for the second quarter of 2024. Although the impact on the company’s financial performance is uncertain, the incident underscores the need for organizations to strengthen their cybersecurity defenses to mitigate such risks moving forward.