MONTHLY THREAT ACTOR GROUP INTELLIGENCE REPORT, JULY 2022 (ENG)
2022-09-22 • NSHC •
https://redalert.nshc.net/2022/09/22/monthly-threat-actor-group-intelligence-report-july-2022-eng/
NSHC ThreatRecon's July 2022 monthly report observed four SectorA groups active during the collection period, with activity in South Korea, Japan, England, the United States, Austria, Russia, Malaysia, Poland, Czech Republic, and Israel. The DPRK-relevant section describes SectorA05 spear-phishing South Korean university professors, media reporters, and researchers focused on unification, diplomacy, national defense, and security, while other SectorA clusters used ransomware or compressed-file lures across multiple regions. NSHC assessed SectorA activity as continuing to collect intelligence on South Korean political, diplomatic, and governmental affairs while also pursuing financially motivated operations. The report is useful for tracking how SectorA operations combined regional intelligence targeting with broader global activity in the same month.