« 2023 »

627 reports

2023-01-10 • Ahnlab

ASEC found fake Kakao login pages built to steal credentials from specific users, likely reached through phishing emails. The pages copied the Kakao login format and prefilled account IDs, increasing the chance that victims would enter passwords without c…

#Phishing
2023-01-05 • Attack IQ

AttackIQ released attack graphs that emulate Lazarus Group tradecraft across historical campaigns including Operation Sharpshooter, Operation In(ter)ception, and Operation Dream Job. The excerpt attributes Lazarus Group to North Korea’s Reconnaissance Gen…

#Trend #DreamJob #Inception #MagicRAT #ThreatNeedle #Sharpshooter #T1082 #T1041 #T1071.001 #T1046 #T1112 #T1083 #T1057 #T1547.001 #T1053.005 #T1036.005 #T1003 #T1105 #T1055 #T1220 #T1049 #T1016 #T1074.001 #T1218.011 #T1218.010 #T1047 #T1025 #T1033 #T1543.003 #T1012 #T1007 #T1572 #T1552.002 #T1003.002 #T1048.001
2023-01-05 • RSi S

RSIS assesses North Korea’s cyber threat as an enduring national-security problem centered on Bureau 121 and associated DPRK cyber units. The article describes Pyongyang’s cyber forces as capable of espionage, destructive malware, and operations launched …

2023-01-03 • Ahnlab

AhnLab ASEC reported a credential-phishing page that closely imitated Kakao’s login screen and prefilled target account IDs. The suspected delivery route was phishing email, and ASEC inferred from the targeted IDs and its North Korea-related monitoring th…

#Phishing
2023-01-01 • CFR

CFR's Cyber Operations Tracker is a dataset rather than a single intrusion report. The excerpt states that since 2005, 34 countries are suspected of sponsoring cyber operations, with China, Russia, Iran, and North Korea linked to 77 percent of suspected o…

#Trend