« 2020 »

197 reports

2020-12-24 • Issuemakers Lab

IssueMakersLab attributed Operation Penta Storm to North Korea RGB-D5, also known as Kimsuky. The operation was described as spear phishing against more than 40 South Korean organizations. Reported targets included South Korean companies, universities, fi…

#PentaStorm #RGB-D5
2020-12-23 • Tradersofcrypto

The article surveys major online thefts against financial institutions and cryptocurrency exchanges over the previous decade, estimating that attackers targeted more than $1 billion. It notes that most incidents remain unattributed, but says a significant…

#Trend #Cryptocurrency #Finance #Eterbase #KuCoin #DragonEx #NiceHash #BancodeChile #CosmosBank #Zaif #Bitpoint #FEIB #Bancomext #Bithumb1 #Bithumb2 #Coinis #StandardBank #CityUnion #BankofValletta #Coincheck #Bithumb3
2020-12-23 • Kaspersky

Kaspersky reported two Lazarus-linked intrusions against COVID-19-related targets: a government health ministry compromised in October 2020 and a pharmaceutical company breached in September 2020. The ministry case used the wAgent malware cluster, includi…

#COVID-19 #Lazarus #T1082 #T1059.003 #T1140 #T1041 #T1071.001 #T1132.001 #T1049 #T1070.006 #T1055.001 #T1021.002 #T1033 #T1569.002 #T1543.003 #T1547.005 #T1027.001 #T1003.002
2020-12-15 • Hvs-consulting

HvS-Consulting described multiple 2020 intrusions against European manufacturing and electrical-industry customers that it attributed with high confidence to Lazarus/APT37 based on overlapping TTPs and IOCs. Patient-zero users were approached via LinkedIn…

#Whitepaper #YARA #Lazarus #T1005 #T1070.004 #T1071.001 #T1497 #T1204.002 #T1566.001 #T1547.001 #T1552.001 #T1135 #T1003.001 #T1068 #T1048 #T1560.001 #T1136.001 #T1021.002 #T1087.002 #T1039
2020-11-25 • ESTSecurity

ESRC reported a malicious HWP document disguised as a private rumor sheet using political, diplomatic and social gossip to entice Korean users. The activity was assessed as likely Thallium based on the document’s tactics and characteristics, including abu…