Source |
The Hacker News |
Identifiant |
2156910 |
Date de publication |
2021-01-08 01:54:44 (vue: 2021-01-08 10:06:01) |
Titre |
ALERT: North Korean hackers targeting South Korea with RokRat Trojan |
Texte |
A North Korean hacking group has been found deploying the RokRat Trojan in a new spear-phishing campaign targeting the South Korean government.
Attributing the attack to APT37 (aka Starcruft, Ricochet Chollima, or Reaper), Malwarebytes said it identified a malicious document last December that, when opened, executes a macro in memory to install the aforementioned remote access tool (RAT).
"The |
Notes |
|
Envoyé |
Oui |
Condensat |
access aforementioned alert: attack attributing been campaign chollima december deploying document executes found government group hackers hacking has identified install korea korean last macro malicious malwarebytes memory new north opened phishing rat reaper remote ricochet rokrat said south spear starcruft targeting tool to apt37 trojan when |
Tags |
Tool
Cloud
|
Stories |
APT 37
|
Move |
|