Filter
Exclude
Time range
-
Near
Andre Gironda retweeted
"건강검진 안내 문서로 위장한 악성코드" published by @logpresso. #Kimsuky, #DPRK, #CTI logpresso.com/en/blog/2025-1…
1
4
Andre Gironda retweeted
"ESET APT Activity Report Q2 2025–Q3 2025" published by @ESETresearch. #APTDown, #DeceptiveDevelopment, #Lazarus, #Trend, #Kimsuky, #Konni, #DPRK, #CTI welivesecurity.com/en/eset-r…
1
1
16
Securityblog retweeted
Kimsuky APT is using a Themes.js JavaScript loader and certutil LOLBIN to gain minute-by-minute persistence via a Windows Scheduled Task. The APT is targeting think tanks for espionage. #Kimsuky #APT #Cyberespionage #ScheduledTask securityonline.info/kimsuky-…
2
4
Lexi👾 retweeted
#kimsuky Malware HttpTroy #lazarus BLINDINGCAN remote access tool upgraded version gendigital.com/blog/insights…
Kimsuky’s Themes.js dropper downloads additional JavaScript from iuh234.medianewsonline, collects system data, packages results into .cab files with certutil, and exfiltrates via POST, establishing persistence with a scheduled task. #Kimsuky #MalwareAnalift.tt/AdbnzXw
『한국 내 탈북 청소년 전문 심리상담사의 카카오톡 계정을 탈취·악용하여 실제 탈북민 학생에게 '스트레스 해소 프로그램'으로 위장한 악성파일을 전송한 사실이 확인되었습니다』🧐 #Kimsuky #Konni 국가 배후 위협 조직의 안드로이드 디바이스 대상 원격 초기화 전술 genians.co.kr/blog/threat_in…
Gaston LaGaffe retweeted
"Dissecting the Infection Chain: Technical Analysis of the Kimsuky JavaScript Dropper" published by @pulsedive. #Kimsuky, #DPRK, #CTI blog.pulsedive.com/dissectin…
8
22
Andre Gironda retweeted
Kimsuky Приглашение[Касат. 80-летия Августовской революции 1945 г. и Дня Независимости].lnk Invitation[Casat. 80th Anniversary of the August Revolution of 1945 and Independence Day].lnk 6d18166da354efacd541bcac622a6e43 C2 medianewsonline[.]com #Kimsuky #APT #IOC
Andre Gironda retweeted
"One person and four entities listed under the Autonomous Sanctions Regulations 2011 – Democratic People’s Republic of Korea" published by AUDFAT. #Andariel, #Kimsuky, #Lazarus, #Sanctions, #DPRK, #CTI dfat.gov.au/news/news/one-pe…
1
6
SeongKyu, Park retweeted
1740489988221-19.jse 5178c640e7694464b73155e0a0fc2493041c48397f3d4e705b79669bced397db #APT #Kimsuky
1
4
16
Moonbeom(Daniel) retweeted
김수키(Kimsuky) 행정안전부 사칭 이메일 분석(2025.10.9) wezard4u.tistory.com/429639 #김수키 #Kimsuky
1
1
Securityblog retweeted
"New Kimsuky Malware “EndClient RAT”: First Technical Report and IOCs" published by @0x0v1. #EndClientRAT, #Kimsuky, #DPRK, #CTI 0x0v1.com/endclientrat/
7
11
CHA Minseok(Jacky) retweeted
Analysis of an Attack Disguised as a Document from the Korean Government’s National Health Care Service logpresso.com/ko/blog/2025-1… #apt #kimsuky @500mk500
1
1
5