{
    "type": "bundle",
    "id": "bundle--4dc73ff0-979f-43f1-8a88-6aca1e83c347",
    "objects": [
        {
            "type": "identity",
            "spec_version": "2.1",
            "id": "identity--373eda53-886c-4b4a-8efd-f86927aec774",
            "created": "2025-04-14T04:14:51.639208Z",
            "modified": "2025-04-14T04:14:51.639244Z",
            "name": "DionAlexander",
            "identity_class": "organization"
        },
        {
            "type": "file",
            "spec_version": "2.1",
            "id": "file--291b4aca-1041-4ebc-b933-c557285e47e0",
            "hashes": {
                "MD5": "15dc6a28b875b4706bcc0db4a026aeb0"
            }
        },
        {
            "type": "file",
            "spec_version": "2.1",
            "id": "file--e4c4ffd0-03c9-4dc5-8e83-07a06c85e934",
            "hashes": {
                "SHA-256": "875b0cbad25e04a255b13f86ba361b58453b6f3c5cc11aca2db573c656e64e24"
            }
        },
        {
            "type": "url",
            "spec_version": "2.1",
            "id": "url--a931f67d-5267-47d1-bc44-928b01a65af1",
            "value": "http://malicious-site.com/update.exe"
        },
        {
            "type": "domain-name",
            "spec_version": "2.1",
            "id": "domain-name--0a0e7a5b-3270-4169-a032-3252ca26b157",
            "value": "malicious-site.com"
        },
        {
            "type": "url",
            "spec_version": "2.1",
            "id": "url--6b408a09-fbdc-4a99-9623-9fa42e3af4b0",
            "value": "http://www.addfriend.kr/board/userfiles/temp/index.html"
        },
        {
            "type": "ipv4-addr",
            "spec_version": "2.1",
            "id": "ipv4-addr--94a143ed-707b-44b3-a2b2-8d7dccd6c98d",
            "value": "211.239.117.117"
        },
        {
            "type": "threat-actor",
            "spec_version": "2.1",
            "id": "threat-actor--a6b38f84-4a9c-5481-ad0c-9b5ee8bd5a96",
            "created": "2026-06-24T19:55:48.934447Z",
            "modified": "2026-06-24T19:55:48.934447Z",
            "name": "APT38"
        },
        {
            "type": "report",
            "spec_version": "2.1",
            "id": "report--83fef14f-967d-46c4-a6d8-8232ad745e02",
            "created_by_ref": "identity--373eda53-886c-4b4a-8efd-f86927aec774",
            "created": "2026-06-24T19:55:48.935923Z",
            "modified": "2026-06-24T19:55:48.935923Z",
            "name": "Unpacking APT38: Static and Dynamic Analysis of Lazarus Group Malware",
            "published": "2025-04-13T00:00:00Z",
            "object_refs": [
                "identity--373eda53-886c-4b4a-8efd-f86927aec774",
                "file--291b4aca-1041-4ebc-b933-c557285e47e0",
                "file--e4c4ffd0-03c9-4dc5-8e83-07a06c85e934",
                "url--a931f67d-5267-47d1-bc44-928b01a65af1",
                "domain-name--0a0e7a5b-3270-4169-a032-3252ca26b157",
                "url--6b408a09-fbdc-4a99-9623-9fa42e3af4b0",
                "ipv4-addr--94a143ed-707b-44b3-a2b2-8d7dccd6c98d",
                "threat-actor--a6b38f84-4a9c-5481-ad0c-9b5ee8bd5a96"
            ],
            "external_references": [
                {
                    "source_name": "source",
                    "url": "https://medium.com/@InfoSecDion/unpacking-apt38-static-and-dynamic-analysis-of-lazarus-group-malware-d2828e0fd6f0"
                }
            ]
        }
    ]
}