Analysis of BlueNoroff Hidden Risk Indicators!
2024-11-10 • TLP_R3D •
The YouTube excerpt frames BlueNoroff Hidden Risk as a CTI training case for infrastructure discovery rather than a standalone incident report. It teaches analysts to pivot from IP addresses in Shodan, connect data points across results, and expand from SentinelOne Hidden Risk indicators to related assets. The available text also names Cobalt Strike, Lumma, and SmokeLoader as examples analysts should recognize during threat infrastructure analysis. The supported CTI value is the workflow for investigating BlueNoroff related indicators, not new victim or malware evidence.
Related Actors
Related Reports
Shares tags: Youtube, Bluenoroff • Published within a month
2024-11-08 •
66% Match
North Korean Threat Actors Deploy Hidden Risk Malware on macOS to Target Crypto Firms – Active IOCs
Rewterz
Shares tags: Bluenoroff, HiddenRisk • Published within a week
2024-11-07 •
66% Match
BlueNoroff Hidden Risk | Threat Actor Targets Macs with Fake Crypto News and Novel Persistence
Sentinel One
Shares tags: Bluenoroff, HiddenRisk • Published within a week
Shares tag: Bluenoroff • Published within a month
2025-01-20 •
43% Match
An exploratory analysis of the DPRK cyber threat landscape using publicly available reports
lazarusholic
Shares tag: Bluenoroff
Shares tag: Bluenoroff