Healthcare providers report breaches affecting millions. PlugX malware is found in over 170 countries. Hackers exploit an old vulnerability to launch Cobalt Strike. A popular Wordpress plugin is under active exploitation. Developing nations may serve as a test bed for malware developers. German authorities question Microsoft over Russian hacks. CISA celebrates the success of their ransomware warning program. Our guest is Eric Goldstein, Executive Assistant Director for Cybersecurity at CISA, discussing open source software. Password trends are a mixed bag.\nRemember to leave us a 5-star rating and review in your favorite podcast app.\nMiss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you\u2019ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.\n\nCyberWire Guest\nOur guest is Eric Goldstein, Executive Assistant Director for Cybersecurity at CISA, discussing open source software.\n\nSelected Reading\nKaiser Permanente data breach may have impacted 13.4 million patients (Security Affairs)\nLA County Health Services: Patients' data exposed in phishing attack (Bleeping Computer)\nChina-linked PlugX malware infections found in more than 170 countries (The Record)\nHackers Exploit Old Microsoft Office 0-day to Deliver Cobalt Strike (GB Hackers)\nCritical WordPress Automatic Plugin Vulnerability Exploited to Inject Backdoors (SecurityWeek)\nCybercriminals are using developing nations as test beds for ransomware attacks (TechSpot)\nMicrosoft Questioned by German Lawmakers About Russian Hack (GovInfo Security)\nMore than 800 vulnerabilities resolved through CISA ransomware notification pilot (The Record)\nMost people still rely on memory or pen and paper for password management (Help Net Security) \xa0\n\nShare your feedback.\nWe want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.\xa0\n\nWant to hear your company in the show?\nYou too can reach the most influential leaders and operators in the industry. Here\u2019s our media kit. Contact us at cyberwire@n2k.com to request more info.\nThe CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. \xa9 2023 N2K Networks, Inc.\nLearn more about your ad choices. Visit megaphone.fm/adchoices