Monthly Threat Actor Group Intelligence Report, January 2025 (KOR)
2025-02-25 • NSHC •
NSHC's January 2025 report observed 51 threat group activities from December 21, 2024 to January 20, 2025, with SectorJ most active and SectorA and SectorB next. SectorA cases included fake recruiter approaches on LinkedIn, Telegram, and Discord; attacks on asset management and DLP systems; HWP spear phishing against defense-related targets; and LNK malware disguised as tax collection documentation. NSHC assesses SectorA as continuing intelligence collection on Korean political, diplomatic, and government activity while also pursuing global financial gain.
Related Actors
Related Reports
Shares tags: Trend, SectorA, SectorA05 • Same author: NSHC • Published within a month
Shares tags: Trend, SectorA, SectorA05 • Same author: NSHC • Published within a month
Shares tags: Trend, SectorA, SectorA05 • Same author: NSHC • Published within a week
Shares tags: Trend, SectorA, SectorA05 • Same author: NSHC • Published within a week
Shares tags: Trend, SectorA, SectorA05 • Same author: NSHC • Published within a month
Shares tags: Trend, SectorA, SectorA05 • Same author: NSHC • Published within a month