« 2023 »

627 reports

2023-07-22 • Phylum

Phylum linked a June 2023 npm supply-chain campaign to GitHub’s high-confidence attribution to Jade Sleet, also known as TraderTraitor, a group operating in support of North Korean objectives. The campaign targeted personal accounts of technology-firm emp…

#NPM
2023-07-21 • Ahnlab

ASEC describes an information-stealing malware campaign delivered through CHM files that impersonated Korean financial firms and insurers around billing dates likely to make recipients trust the lures. The CHM execution chain used hh.exe to open the help …

#CHM
2023-07-18 • Tay

The GitHub repository is a curated research notebook on Lazarus, Bluenoroff and other DPRK-linked activity affecting Web3, exchanges, bridges and crypto users. The excerpt points readers to maintained spreadsheets, DPRK cyber background material, GitHub s…

#Cryptocurrency
2023-07-17 • Risky Biz News

JumpCloud said a state-sponsored APT breached part of its internal infrastructure after a spear-phishing attack and later showed unusual activity in the commands framework for a small set of customers. The company rotated credentials, rebuilt infrastructu…

#JumpCloud