tldr; Kimsuky, a North Korean hacking group, has been using a new malware called “Durian” to target South Korean cryptocurrency firms, according to a Kaspersky report. The malware, designed to exploit security software, has already compromised at least two firms. Durian acts as an initial-stage installer, setting up further malware and enabling remote command execution for data theft. The report also hints at a possible connection between Kimsuky and the Lazarus Group, another North Korean hacking entity, though the link is described as weak.
*This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.
1 Comment
tldr; Kimsuky, a North Korean hacking group, has been using a new malware called “Durian” to target South Korean cryptocurrency firms, according to a Kaspersky report. The malware, designed to exploit security software, has already compromised at least two firms. Durian acts as an initial-stage installer, setting up further malware and enabling remote command execution for data theft. The report also hints at a possible connection between Kimsuky and the Lazarus Group, another North Korean hacking entity, though the link is described as weak.
*This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.