Similar AhnLab Response Cases Regarding Korea-US Joint Cyber Security Advice

2023-06-08 Ahnlab

https://asec.ahnlab.com/en/53780/

Thumbnail for Similar AhnLab Response Cases Regarding Korea-US Joint Cyber Security Advice

AhnLab summarizes the June 2023 Korea-US advisory on North Korea’s Kimsuky group and ties it to ASEC’s earlier response cases. The advisory from South Korean and US agencies warned that Kimsuky uses social engineering against global think tanks, academia, and media, commonly impersonating reporters, scholars, or people connected to North Korea policy communities to conduct spear-phishing by email. AhnLab notes that no IOCs were released with the advisory, but points to prior ASEC cases involving Kimsuky press-release lures, phishing against North Korea-related personnel, GitHub-hosted profile-template malware, CHM malware disguised as a North Korea-related questionnaire, malicious Word documents, and diplomacy or defense-themed documents. The report is useful as a source map linking the joint advisory’s TTP descriptions to concrete AhnLab cases.

Related Actors

Related Reports

« Back