한국 내 대북분야 종사자를 겨냥한 고도화된 BitB 공격 등장

2023-09-01 Genians Advanced BitB attacks targeting North Korean workers in South Korea appear

https://www.genians.co.kr/blog/bitb

Attachments

20230901_threat_inteligence_report_BitB.pdf (2 MB)

Thumbnail for 한국 내 대북분야 종사자를 겨냥한 고도화된 BitB 공격 등장

Genians identified a sophisticated Browser-in-the-Browser phishing operation targeting people involved in North Korea-related work in South Korea. The attackers impersonated Liberty in North Korea's Changemaker support program and copied real Facebook content to build a convincing credential-theft page around an active funding opportunity. The operation used a fake single sign-on flow and infrastructure links that Genians connected to APT37, indicating a cyber-espionage effort aimed at monitoring activists and stealing account details.

Related Actors

Related Reports

« Back