Slow Fog: Domains and Trojan samples used by North Korea's Lazarus group have been discovered

2023-09-12 16:17:44
Collection

ChainCatcher news, recently, Slow Mist and its partners discovered a large-scale APT attack activity directed at the cryptocurrency industry by the North Korean Lazarus group.

It is reported that their attack methods are as follows: first, they impersonate identities, tricking reviewers through real-person authentication to become legitimate customers, and then making real deposits. Under the cover of this customer identity, they then specifically deploy customized Trojans for Mac or Windows targeting official personnel during multiple communication points with officials and customers (attackers). After gaining access, they conduct lateral movement within the internal network, remaining dormant for a long time to achieve the goal of stealing funds.

ChainCatcher reminds readers to view blockchain rationally, enhance risk awareness, and be cautious of various virtual token issuances and speculations. All content on this site is solely market information or related party opinions, and does not constitute any form of investment advice. If you find sensitive information in the content, please click "Report", and we will handle it promptly.
banner
ChainCatcher Building the Web3 world with innovators