Some common threads...

News broke this morning of a long running North Korean campaign targeting cybersecurity researchers on Twitter, roughly playing nice and engaging until they could build enough trust to pass on files containing malicious code.

There is often sideways movement in cybersecurity attacks - you might want to get into one computer to get leverage on another one. In this example, as in SolarWinds its looks like the right place to start breaking down cybersecurity is the cybersecurity community itself...

https://blog.google/threat-analysis-group/new-campaign-targeting-security-researchers/amp/