the Maiden of Anguish
First seen: 2017-07 •
Last seen: 2026-05
#DESERTWOLF • 2016-08
DESERTWOLF involved a compromise of South Korean defense-network systems after attackers abused weaknesses in the military internet antivirus system and distributed malware through an internet antivirus relay server. Investigators found malware on defense-network PCs, confirmed theft of military materials including classified information, and cited weak vulnerability management and improper internet-to-defense network connectivity; South Korean defense reporting assessed the activity as likely North Korean, and FSI later grouped DESERTWOLF within the Andariel/Rifle activity set.
5
Related Reports
1
Affected Countries
118
Months Since
the Maiden of Anguish