Browsing tag

South Korea

Hackers Exploiting VMware Horizon to Target South Korea with NukeSped Backdoor

The North Korea-backed Lazarus Group has been observed leveraging the Log4Shell vulnerability in VMware Horizon servers to deploy the NukeSped (aka Manuscrypt) implant against targets located in its southern counterpart. “The attacker used the Log4j vulnerability on VMware Horizon products that were not applied with the security patch,” AhnLab Security Emergency Response Center (ASEC) said […]

South Korean DarkHotel Hackers Targeted Luxury Hotels in Macau

Luxury hotels in the Chinese special administrative region of Macau were the target of a malicious spear-phishing campaign from the second half of November 2021 and through mid-January 2022. Cybersecurity firm Trellix attributed the campaign with moderate confidence to a suspected South Korean advanced persistent threat (APT) tracked as DarkHotel, building on research previously published […]

PseudoManuscrypt Malware Spreading the Same Way as CryptBot Targets Koreans

Numerous Windows machines located in South Korea have been targeted by a botnet tracked as PseudoManuscrypt since at least May 2021 by employing the same delivery tactics of another malware called CryptBot. “PseudoManuscrypt is disguised as an installer that is similar to a form of CryptBot, and is being distributed,” South Korean cybersecurity company AhnLab […]

Watch out as new PhoneSpy spyware hits Android devices

PhoneSpy spyware is currently targeting Android users in South Korea through third-party platforms. Zimperium zLabs researchers have revealed findings on PhoneSpy spyware that can infiltrate Android handsets and is spread through malicious applications. For now, the good news is that the malicious apps are not available on Google Play Store. “Samples of PhoneSpy were not […]

Researchers Uncover Hacking Operations Targeting Government Entities in South Korea

A North Korean threat actor active since 2012 has been behind a new espionage campaign targeting high-profile government officials associated with its southern counterpart to install an Android and Windows backdoor for collecting sensitive information. Cybersecurity firm Malwarebytes attributed the activity to a threat actor tracked as Kimsuky, with the targeted entities comprising of the […]

North Korean Hackers Stole US-South Korean War Data Plans worth 235 Gigabyte

North Korean hackers stole a tremendous data from South Korea military database, including wartime contingency plans jointly drawn by the United States and South Korea. Stolen data also consist of incorporates techniques to “execute” the North Korean leadership. North Korea and South Korea have long had each other’s PC Networks in their sights. Mr. Rhee […]

South Korea’s Military Cyber Command Suffers Embarrassing Hack

For now, nobody’s pointing fingers at North Korea An unknown attacker has hacked South Korea’s military cyber command center last month, state officials told local media outlet Yonhap News. Government officials said the attacker found and exploited a security flaw in a central router called the “vaccine routing server.” Ironically, as the server’s name hints, […]

​Hackers hit central banks in Indonesia and South Korea

The central banks of Indonesia and South Korea have been hit by distributed denial of service attacks on their public websites, with officials linking the timing of the attacks to a pledge made in May by hacktivist group Anonymous. In the month since activist hacking group Anonymous pledged to target banks across the world, senior […]

North Korea mounts long-running hack of South Korea computers, says Seoul

North Korea hacked into more than 140,000 computers at 160 South Korean firms and government agencies, planting malicious code under a long-term plan laying groundwork for a massive cyber attack against its rival, police in the South said on Monday. South Korea has been on heightened alert against cyber attacks by the North after Pyongyang […]