北 라자루스, 해킹 위해 가짜 SW회사 만들어

2018-09-20 ETNews North Korea's Lazarus Created a Fake Software Company for Hacking

https://www.etnews.com/20180920000186

Thumbnail for 北 라자루스, 해킹 위해 가짜 SW회사 만들어

Lazarus used a fake software company called Celas to distribute a cryptocurrency trading application that covertly compromised users, according to Kaspersky Lab researchers speaking at Cyber Week 2018. The operation relied on suspicious corporate registration details and trusted-looking certificates, making it a fake supply-chain attack against cryptocurrency traders and exchanges. Kaspersky also linked Lazarus activity to the Coinis/WaveString breach, where attackers allegedly stole a company code-signing certificate and used it to sign malware disguised as an OpenSSL library and push malicious files through the Coinis HTS update path. The activity reflects Lazarus' shift from espionage toward financially motivated cybercrime targeting cryptocurrency assets.

Related Actors

Related Reports

« Back