logo

Operation Poseidon: Konni APT Hijacks Google & Naver Ads for Malware

ID: 1439c25d-dfd2-516a-b110-858e98f2f4da

STIX ID: report--1439c25d-dfd2-516a-b110-858e98f2f4da

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-01-20

Date Updated: 2026-04-23

Author: Ddos

...
...

**Executive summary:** Genians Security Center uncovered "Operation Poseidon," a sophisticated Konni APT campaign that abused legitimate Google and Naver ad-click redirection to deliver EndRAT via targeted phishing against South Korean financial and human-rights sectors, using invisible-content padding to evade AI scanners and leaving a build-path artifact that aided attribution.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.