피싱 메일 공격 사례 분석 및 대응 방안

2020-08-20 KRCERT Analysis of Phishing Email Attack Cases and Countermeasures

https://www.krcert.or.kr/kr/bbs/view.do?searchCnd=1&bbsId=B0000127&searchWrd=%ED%94%BC%EC%8B%B1&menuNo=205021&pageIndex=1&categoryCode=&nttId=35560

Attachments

피싱_메일_공격_사례_분석_및_대응_방안_.pdf (18 MB)

Thumbnail for 피싱 메일 공격 사례 분석 및 대응 방안

The source analyzes phishing email attack cases from initial email delivery through credential theft and attacker mail-sending infrastructure. It describes document-themed lures using PDF, PowerPoint, Word, and HWP files, password-processing behavior in web shells using MD5 and SHA1, and PowerShell activity that downloaded ExtSecond.dll malware, providing defenders with concrete stages and artifacts for phishing-response planning.

Related Reports

« Back