"Demystifying the North Korean Threat" published by Paradigm. #AppleJeus, #ITWorker, #Lazarus, #Trend, #DangerousPassword, #TraderTraitor, #DPRK, #CTI https://www.paradigm.xyz/2025/03/demystifying-the-north-korean-threat
"Demystifying the North Korean Threat" published by Paradigm. #AppleJeus, #ITWorker, #Lazarus, #Trend, #DangerousPassword, #TraderTraitor, #DPRK, #CTI https://www.paradigm.xyz/2025/03/demystifying-the-north-korean-threat
🚨 New Malware Report 🚨
AppleJeus malware is hijacking wallets & stealing funds. Don't be the next victim!
Read the report! 🔗 https://bit.ly/3QoD5hp
"Beware of Contacts through LinkedIn: They Target Your Organization’s Property, Not Yours" published by JPCERT. #AppleJeus, #DangerousPassword, #DreamJob, #Lazarus, #DPRK, #CTI https://blogs.jpcert.or.jp/en/2025/01/initial_attack_vector.html
"あなたではなく組織の財産を狙うLinkedIn経由のコンタクトにご用心" published by JPCERT. #AppleJeus, #DangerousPassword, #DreamJob, #Lazarus, #DPRK, #CTI https://blogs.jpcert.or.jp/ja/2025/01/initial_attack_vector.html
Crypto hacks now seem like daily occurrences - one recent example:
Radiant Capital says North Korean threat actors are behind the $50M cryptocurrency heist that occurred after hackers breached its systems on Oct 16.
Hackers spoofed a former software contractor tricking a staffer to download a malicious ZIP file containing a decoy PDF file and a malware payload named "'InletDrift". https://www.bleepingcomputer.com/news/security/radiant-links-50-million-crypto-heist-to-north-korean-hackers/
#cyberattack #NorthKorea #UNC4736 #AppleJeus #Crypto #DiFi #Ethereum #blockchain #InletDrift
"Radiant Capital Incident Update" published by RadiantCapital. #AppleJeus, #Radiant, #UNC4736, #DPRK, #CTI https://medium.com/@RadiantCapital/radiant-capital-incident-update-e56d8c23829e
Originally posted by The Hacker News / @TheHackersNews: http://nitter.platypush.tech/TheHackersNews/status/1643101750553899008#m
R to @TheHackersNews: The link to North Korea comes from Gopuram's co-existence with #AppleJeus, a backdoor attributed to the Lazarus Group.
This group has a recurring focus on the financial industry, which aligns with the targeting of #crypto companies.
Microsoft’s Security Threat Intel team described an attack where a threat actor was targeting cryptocurrency investment companies. Thanks to Microsoft for sharing their analysis and referencing our research about a recent #AppleJeus campaign!
We published a blog #post about #Lazarus. They are still abusing fake cryptocurrency applications but we also identified #maldoc with #macro (an inception of macros). The purpose is to deploy #AppleJeus variants.
From #reverse point of view, they implemented an uncommon side-loading technique. The malicious DLL is not directly loaded by the IAT of a legit binary, but via a legitimate DLL from the System32 repository. More details on the @volexity blog : https://www.volexity.com/blog/2022/12/01/buyer-beware-fake-cryptocurrency-applications-serving-as-front-for-applejeus-malware/
#CTI #threatintel #threatintelligence
[#Blog] Volexity details novel tradecraft employed by #Lazarus to deploy #AppleJeus malware using Microsoft Office documents, cryptocurrency applications, and chained DLL side-loading. More details here: https://www.volexity.com/blog/2022/12/01/buyer-beware-fake-cryptocurrency-applications-serving-as-front-for-applejeus-malware/
U.S. Indicts North Korean Hackers in Theft of $200 Million - The U.S. Justice Department today unsealed indictments against three men accused of working with the... https://krebsonsecurity.com/2021/02/u-s-indicts-north-korean-hackers-in-theft-of-200-million/ #cybersecurityandinfrastructureagency #departmentofhomelandsecurity #neer-do-wellnews #marinechaintoken #ghalebalaumary #jonchanghyok #lazarusgroup #sonypictures #hiddencobra #parkjinhyok #applejeus #wannacry #apt38 #kimil #fbi
США рассказали о северокорейском вредоносе AppleJeus для кражи криптовалюты #AppleJeus, #криптовалюта https://t.co/nSAcuOFyoh https://t.co/Mp33PaHAEN
Источник: https://twitter.com/SecurityLabnews/status/1362767656944812035
U.S. Indicts North Korean Hackers in Theft of $200 Million https://krebsonsecurity.com/2021/02/u-s-indicts-north-korean-hackers-in-theft-of-200-million/ #CybersecurityandInfrastructureAgency #DepartmentofHomelandSecurity #Ne'er-Do-WellNews #MarineChainToken #GhalebAlaumary #JonChangHyok #LazarusGroup #SonyPictures #HiddenCobra #ParkJinHyok #AppleJeus #WannaCry #APT38 #KimIl #fbi