:

CHINESE HACKERS BREACH REDCAP, STEAL MEDICAL DATA

SECURITY DESK1 MIN READ
MON, JUN 15, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

China-linked hackers exploited exposed REDCap servers to deploy InfiniteRed malware and steal sensitive research data from a North American medical institution.

The espionage campaign targeted unpatched vulnerabilities in REDCap, a widely-used platform for managing clinical research data. Attackers deployed the InfiniteRed malware to maintain persistent access and exfiltrate confidential information. REDCap servers are popular across hospitals and research facilities for managing patient data and clinical trials. The breach underscores ongoing risks faced by healthcare institutions, particularly those with inadequate patch management protocols. Security researchers attribute the campaign to state-sponsored actors based in China. The incident highlights how exposed medical infrastructure remains a target for foreign intelligence operations seeking proprietary research, clinical trial data, and institutional information. No timeline for discovery or containment was disclosed. Healthcare organizations using REDCap are advised to audit access logs, apply security patches, and review data access controls.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Security researchers have identified potential hardware backdoors in certain x86 processors. The findings, detailed in a GitHub repository called Rosenbridge, reveal vulnerabilities at the processor level that could allow unauthorized access.

JUST NOWIndustry Desk

Flock Safety, the traffic camera company, is expanding beyond law enforcement with plans to deploy dashcams in rideshare vehicles and offer coaching services to police departments.

JUST NOWIndustry Desk

A sharp rise in explicit deepfake images of UK children has been reported by an online safety service, as authorities warn that AI tools are making the creation of sexualized or 'nudified' content increasingly accessible.

JUST NOWIndustry Desk

Gen's latest threat report details two distinct attack campaigns exploiting compromised email accounts and clipboard manipulation to steal from businesses and cryptocurrency users.

1H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.