« 2022 »

296 reports

2022-11-01 • Kaspersky

Kaspersky confirmed a 2022 Maui ransomware incident and expanded the known timeline to April 15, 2021, with targets in Japan and India. The excerpt says CISA attributed Maui activity to North Korean state-sponsored actors, while Kaspersky found no useful …

#Trend
2022-10-31 • Qianxin

QiAnXin’s mid-year 2022 APT report reviews global state-linked cyber activity, including Chinese-language coverage of Korean Peninsula-related actors, Russia-Ukraine cyber operations, and vulnerability exploitation trends. The report notes that 2022 activ…

#Trend
2022-10-28 • FDD

FDD’s monograph analyzes how North Korea has developed cyber operations as Kim Jong Un’s “all-purpose sword” for regime survival, revenue, espionage, and coercion. It describes financially motivated cybercrime against banks and cryptocurrency exchanges, r…

2022-10-25 • Ahnlab

AhnLab ASEC analyzed Magniber ransomware’s rapid evolution across May–September 2022 as the operators changed file formats, execution flows, injection behavior, and UAC-bypass techniques to evade detection. Samples were distributed as MSI, CPL, JSE, JS, a…

#Ransomware #Magniber
2022-10-21 • Merklescience

The laundered assets include over $450 million stolen by North Korea based 'Lazarus Group' that was sanctioned by the US government in 2019. Tornado Cash is an open-source, non-custodial, decentralized cryptocurrency mixer that runs on the Ethereum blockc…

#Cryptocurrency #Sanctions
2022-10-14 • JPNPA

Japan's National Police Agency warned that the Lazarus cyber-attack group, assessed as subordinate to North Korean authorities, had been targeting cryptocurrency-related businesses and exchanges. The advisory cites UN, FBI, CISA, and Treasury reporting an…

#Trend #Cryptocurrency