« 2018 »

171 reports

2018-04-12 • Coin Secure

Coinsecure disclosed the theft of 438 BTC from its main wallet and said its system had not been compromised, instead linking the loss to a Bitcoin Gold extraction process. The exchange's CEO accused CSO Amitabh Saxena of fabricating a story about an exter…

#CoinSecure
2018-04-06 • Crowd Strike

CrowdStrike profiles STARDUST CHOLLIMA as a targeted intrusion adversary with a likely DPRK nexus and a primary focus on generating funds through operations against financial institutions. The activity includes past campaigns abusing SWIFT systems and int…

#StardustChollima
2018-04-03 • Ahnlab

AhnLab profiles the Red Eyes group, also known as Geumseong121, Group 123, ScarCruft, APT37, Reaper, and Ricochet Chollima, as a cluster targeting defectors, North Korean human-rights activists, North Korea researchers, journalists, and some military-them…

#RedEyes
2018-03-28 • USCISA

DHS and FBI attributed SHARPKNOT to HIDDEN COBRA, the U.S. government's label for North Korean state cyber activity. The MAR analyzes a 32-bit Windows executable that must be launched with a command-line argument, disables selected Windows services, overw…

#HiddenCobra #SHARPKNOT