March 2026 Security Issues in the Korean & Global Financial Sector
ID: d172dfc0-0673-5d0c-85c5-05376c8cfdc0
STIX ID: report--d172dfc0-0673-5d0c-85c5-05376c8cfdc0
Feed Name: ASEC
The report details a March 2026 surge of multi-stage attacks against Korean and global financial institutions — including phishing campaigns (Korean-language attachments and HTML/JS loaders), web shells, droppers, backdoors, downloaders, infostealers, coinminers, Telegram-based account compromises (~4% of affected financial accounts), and ransomware double-extortion and DDoS incidents — and documents an AnySign4PC watering-hole RCE attributed to the Lazarus group, dark web sale claims of large breached datasets, and associated MD5 and URL indicators.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
