국제 행사 동시 통역사를 겨냥한 北 연계 해킹 시도 등장

2022-01-26 ESTSecurity North Korea-linked hacking attempt targeting simultaneous interpreters at international events appears

https://blog.alyac.co.kr/4450

Thumbnail for 국제 행사 동시 통역사를 겨냥한 北 연계 해킹 시도 등장

ESRC reported a North Korea-linked phishing operation that targeted simultaneous interpreters with tailored emails posing as international-event interpretation requests. The lures varied by language focus, including English, Chinese, Russian, and some Japanese indicators, and pushed recipients to a fake electronic-document security page that requested email passwords. If credentials were entered, the attackers exfiltrated them, then sent follow-up messages claiming the event had been postponed to reduce victim suspicion. ESRC linked accounts.nidnavercorp.cloudns.nz and recurring attacker identifiers to prior North Korea-linked activity, and noted that some delivered Word files used the same macro code and infection methods seen in earlier campaigns.

« Back