Lazarus Group targets South Korean supply chains via software flaws

Kaspersky’s Global Research and Analysis Team (GReAT) has identified a new cyber campaign led by the Lazarus Group targeting supply chains in South Korea through combined watering hole attacks and exploitation of vulnerabilities in third-party software. The campaign, dubbed “Operation SyncHole,” was observed targeting at least six organisations across the software, IT, financial, semiconductor, and…

Read More

Managing risks from third parties with TPRM is mis-aligned: EY survey

The 2025 EY Global Third-Party Risk Management Survey reveals new approaches to managing risks from third parties in a more volatile environment. Risk leaders are using AI and centralization to fundamentally transform their third-party risk management functions for the future. Business uncertainty and cost pressures are driving efficiency imperatives for third-party risk management A confluence of…

Read More