« 2022 »

296 reports

2022-12-07 • KBS

KBS reported that malicious mobile apps used in voice-phishing schemes against South Koreans were linked by government authorities to a North Korean IT organization member selling the tools to Chinese criminal groups. The demonstration video showed an ope…

#News #Phishing
2022-11-30 • ESET

ESET identified Dolphin, a previously undocumented ScarCruft/APT37 backdoor deployed only to selected victims after earlier-stage compromise. The 2021 attack chain used a watering-hole compromise of a South Korean online newspaper, an Internet Explorer ex…

#Scarcruft #Dolphin #T1102.002 #T1082 #T1119 #T1567.002 #T1005 #T1113 #T1020 #T1071.001 #T1083 #T1056.001 #T1059.006 #T1059.007 #T1027 #T1555.003 #T1124 #T1518.001 #T1547.001 #T1053.005 #T1539 #T1203 #T1189 #T1016 #T1074.001 #T1106 #T1025 #T1055.002 #T1010 #T1033 #T1560.002 #T1016.001
2022-11-25 • INSS

The INSS report describes North Korea’s shift since the mid-2010s toward financially motivated cyber operations against banks, cryptocurrency exchanges, wallets, and related services to generate foreign currency under sanctions. It cites ransomware, bank …

#Cryptocurrency