December 2025 APT Group Trends
ID: e8353325-c119-572e-b88d-d0061634401a
STIX ID: report--e8353325-c119-572e-b88d-d0061634401a
Feed Name: ASEC
Threat Score
**Executive Summary:** The report details North Korean APT activity that leverages fraudulent remote‑work recruitment and hardware/firmware techniques (PiKVM) to gain persistent access to corporate networks, and documents Lazarus Group use of a WinRAR ADS path traversal (CVE-2025-8088) to deliver a multi‑stage Python loader and the Blank Grabber infostealer that exfiltrates browser credentials, messaging tokens, and cryptocurrency wallet seed phrases.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
