« 2023 »

627 reports

2023-03-28 • Bridewell

Kimsuky employs a range of tactics, techniques, and procedures (TTPs) such as spear-phishing campaigns, social engineering, and custom malware to compromise its targets and exfiltrate sensitive data. Strengthen security awareness training for employees, e…

#Kimsuky
2023-03-27 • BBC

BBC’s Lazarus Heist episode “Hushpuppi” links a social media influencer to laundering cash for the hackers and funding a luxury lifestyle. The excerpt provides a concise episode description rather than a technical report, and it does not include indicator…

#Podcast #Lazarus
2023-03-27 • BBC

BBC’s Lazarus Heist episode “Big Boss” follows the hackers’ turn to the dark web and highlights a figure called “Big Boss” as important to the ATM heist. The available source is a short BBC Sounds listing, so it supports only the episode’s focus and not s…

#Podcast #ATM #Lazarus
2023-03-24 • Kaspersky

Kaspersky’s H2 2022 industrial APT roundup includes several DPRK-relevant items affecting industrial and critical-infrastructure defenders. It summarizes Microsoft reporting on DEV-0530/H0lyGh0st ransomware, a North Korea-based actor linked to PLUTONIUM/A…

#Trend