Endless gunfire in South Korea
2017-06-08 • Kaspersky •
Attachments
The conference excerpt describes an APT attack case in South Korea in which the threat actor used both general exploits and a custom exploit to infect potential victims. The session focuses on the custom exploit and the actor’s TTPs across the APT attack lifecycle, making it relevant as a South Korea-focused intrusion case rather than a broad regional overview. The available excerpt does not identify a specific DPRK actor, malware family, victim organization, or infrastructure, so attribution and technical detail should remain limited to the stated exploit and lifecycle themes.
Related Reports
2017-05-30 •
50% Match
Shares tags: DESERTWOLF, GhostRAT • Same author: Kaspersky • Published within a month
2017-07-27 •
40% Match
#Andariel
#Whitepaper
#Rifle
#VANXATM
#DESERTWOLF
#GhostRAT
#INITROY
#DarkSeoul
#MAYDAY
#XEDA
#BLACKSHEEP
Shares tags: VANXATM, DESERTWOLF, GhostRAT
2023-04-16 •
20% Match
Perfect Smoke and Mirrors of Enemy: Following Lazarus group by tracking DeathNote Campaign
Kaspersky
Shares tag: Youtube • Same author: Kaspersky
2021-10-09 •
20% Match
Multi-universe of adversary: multiple campaigns of the Lazarus group and their connections
Kaspersky
Shares tag: Youtube • Same author: Kaspersky
Shares tag: Youtube • Same author: Kaspersky
Shares tag: VANXATM