« 2023 »

627 reports

2023-05-15 • Poly Swarm

Reaper, also known as APT37, used newer delivery TTPs to deploy RokRAT against South Korea-focused targets. The campaign delivered ZIP archives containing oversized LNK files masquerading as PDF documents, alongside benign files, through energy-sector and…

#RokRAT #TEMP.Reaper #LNK