North Korea Invades Russia With RAT

North Korea Invades Russia With RAT

Researchers discovered a campaign carried out by the North Korea-linked Konni APT group aimed at Russian diplomatic entities that used new versions of malware implants. The APT group carried out spear-phishing attacks using…
APT37 Unleashes Chinotto Malware

APT37 Unleashes Chinotto Malware

North Korean defectors, journalists, and entities in South Korea are being targeted in on by a nation state sponsored APT tracked as ScarCruft, also known as APT37 aka Reaper Group…
Hackers Impersonates as Samsung Recruiters

Hackers Impersonates as Samsung Recruiters

North Korean state-sponsored hackers posed as Samsung recruiters and sent fake job offers to employees at South Korean security companies that sell anti-malware software. The emails included a PDF allegedly…
BlueLight Payload

BlueLight Payload

Researchers from Volexity recently investigated a Strategic Web Compromise of the Daily NK website by InkySquid. The targeted site is an online newspaper based in South Korea that posts news…
North Korea Exploits South Korea

North Korea Exploits South Korea

South Korea's state-run Korea Atomic Energy Research Institute (KAERI) disclosed that its internal network was infiltrated by suspected attackers operating out of its northern counterpart. The intrusion is said to…
KIMSUKY APT37 Tactic Change

KIMSUKY APT37 Tactic Change

North Korean APT group Kimsuky is adopting new TTP, by splitting it into two smaller subgroups: CloudDragon and KimDragon. It often employs social engineering, spear-phishing, and watering hole attacks to…