« 2025 »

778 reports

2025-06-16 • NKInternet

An exposed ownCloud instance at cloud.star.net.kp, resolving to 175.45.176.31, revealed user files and server logs from North Korean-hosted infrastructure. The accessible /data directory exposed files for each user and logs showing activity from RFC-1918 …

2025-06-12 • Ahnlab

AhnLab’s May 2025 South Korea APT trend data identifies spear phishing as the dominant observed intrusion vector, with lures tied to tax reporting, privacy compliance, virtual assets, foreign exchange, and administrative submissions. The excerpt describes…

#LNK
2025-06-12 • Ahnlab

AhnLab’s May 2025 APT trend roundup highlights North Korean activity against Ukrainian government agencies and broader attempts to infiltrate organizations by posing as workers in cybersecurity and other industries. The Konni section describes February 20…

#Konni #TA-RedAnt
2025-06-11 • Ahnlab

AhnLab's May 2025 domestic APT trend data shows spear phishing as the dominant intrusion route against South Korean targets, with LNK-based delivery taking the largest share. The observed lures used tax, privacy, virtual-asset, business-document, and unif…

#LNK