Talent Need Not Apply: Tradecraft and Objectives of Job-themed APT Social Engineering

2022-08-11 PWC

http://i.blackhat.com/USA-22/Thursday/US-22-Wikoff-Talent-Need-Not-Apply.pdf

Attachments

US-22-Wikoff-Talent-Need-Not-Apply.pdf (3 MB)

Thumbnail for Talent Need Not Apply: Tradecraft and Objectives of Job-themed APT Social Engineering

PwC's Black Hat USA presentation examines job-themed social engineering used by advanced threat actors, with particular attention to North Korea-linked activity tracked as Black Artemis or temp.Hermit. The material describes malicious recruiter-style lures, dream-job themes, and attachments aimed at sectors such as aerospace, defense industrial base, and manufacturing. It uses the campaign evolution to explain initial-access tradecraft, attacker motives, and recognition of social-engineering attempts that exploit employment anxiety and professional opportunity.

Indicators of Compromise

Type Value First Seen Last Seen
DOMAIN mail.daiwa-inv.com 2022-08-11 2022-08-11
DOMAIN lm-careers.com 2022-08-11 2022-08-11
DOMAIN ny.silvergatehr.com 2022-08-11 2022-08-11
DOMAIN applytalents.com 2022-08-11 2022-08-11
DOMAIN careers-finder.com 2022-08-11 2022-08-11
DOMAIN global-job.org 2022-05-05 2022-08-11
DOMAIN indeedus.org 2022-03-24 2022-08-11

Related Actors

Related Reports

2022-04-29 • 45% Match
#Trend #BlackBanshee #BlackAlicanto #T1082 #T1059.003 #T1090 #T1005 #T1070.004 #T1041 #T1113 #T1555 #T1560 #T1071.001 #T1112 #T1083 #T1204.001 #T1036 #T1027 #T1204.002 #T1071 #T1124 #T1204 #T1057 #T1059.005 #T1566.001 #T1547.001 #T1053.005 #T1132.001 #T1566 #T1059 #T1003 #T1105 #T1620 #T1486 #T1135 #T1078 #T1548 #T1190 #T1592 #T1049 #T1087 #T1589 #T1074.001 #T1591 #T1547 #T1068 #T1573 #T1095 #T1048 #T1608 #T1070 #T1056 #T1036.007 #T1614.001 #T1033 #T1110 #T1221 #T1132 #T1570 #T1021 #T1615 #T1482 #T1210 #T1069 #T1595 #T1039 #T1016.001
Shares tag: BlackAlicanto • Same author: PWC
« Back