April 25, 2023, 1:03 a.m. | SC Staff

SC Magazine feed for Risk Management www.scmagazine.com

Two energy sector entities in the U.S. and Europe, as well as two other financial trading organizations, have been impacted by a software supply chain attack launched by North Korean state-sponsored threat operation Lazarus Group involving the use of a trojanized version of Trading Technologies' X_Trader software that was initially reported to have affected 3CX, according to The Record, a news site by cybersecurity firm Recorded Future.

3cx attack critical infrastructure cybersecurity energy energy sector entities europe financial future lazarus lazarus group north north korean organizations recorded future sector software software supply chain software supply chain attack sponsored state supply supply chain supply chain attack technologies the record third party risk threat trading trading technologies version x_trader

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Principal Security Analyst - Threat Labs (Position located in India) (Remote)

@ KnowBe4, Inc. | Kochi, India

Cyber Security - Cloud Security and Security Architecture - Manager - Multiple Positions - 1500860

@ EY | Dallas, TX, US, 75219

Enterprise Security Architect (Intermediate)

@ Federal Reserve System | Remote - Virginia

Engineering -- Tech Risk -- Global Cyber Defense & Intelligence -- Associate -- Dallas

@ Goldman Sachs | Dallas, Texas, United States

Vulnerability Management Team Lead - North Central region (Remote)

@ GuidePoint Security LLC | Remote in the United States