Messy And Loud Hack In South Korea Doesn’t Look State Sponsored
ID: e444f193-4a99-5df1-a4ce-0db83a849912
STIX ID: report--e444f193-4a99-5df1-a4ce-0db83a849912
Feed Name: Security Ledger
Threat Score
A security researcher analyzed malware used in coordinated attacks on South Korean media and banks that executed at a preset time (2:00pm KST) and wiped Windows and Linux file shares; the campaign used infected email attachments, commercially available toolsets (including Gondad-related components), appears unsophisticated and noisy, and is judged unlikely to be state-sponsored.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
