$ intel.mask2.ca

ADVISORY · 2026-06-15 · SRC BLEEPINGCOMPUTER · HIGH
2026-06-15 high REL 8/10

Chinese-linked hackers breach REDCap servers, deploy InfiniteRed malware

healthcarepost-secondary

A threat actor with Chinese nexus exploited exposed REDCap servers to install InfiniteRed malware and exfiltrate sensitive data from a North American medical organization. REDCap is widely deployed research data management software used across healthcare and academic institutions. The attack demonstrates ongoing targeting of research infrastructure by state-sponsored groups seeking intellectual property and medical data.

Why it matters in Western Canada: REDCap is heavily adopted by Canadian universities, healthcare systems, and research centers across Western Canada. This breach highlights the risk to post-secondary and healthcare organizations in the region that rely on REDCap for clinical research and may have exposed instances.


Summary generated from the original advisory. Read the full source: bleepingcomputer

Source
https://www.bleepingcomputer.com/news/security/chinese-hackers-breach-redcap-servers-steal-medical-research/
CVEs
None listed
Tags
redcap, malware, espionage, research-data, healthcare
Provenance
mask2-ti-pipeline (AI-assisted, human-reviewable)