logo

DPRK Uses Microsoft Zero-Day in No-Click Toast Attacks

ID: 0b6e0783-0e0f-5881-b5f3-0a35a36d4d76

STIX ID: report--0b6e0783-0e0f-5881-b5f3-0a35a36d4d76

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2024-10-21

Date Updated: 2026-04-21

Author: Tara Seals, Managing Editor, News, Dark Reading

...
...

AhnLab reported that North Korea-linked APT37 exploited an Internet Explorer zero-day (CVE-2024-38178, CVSS 7.5) to compromise a Toast ad program used by Windows users; the ad script was modified to deliver the RokRAT remote-access malware in a zero-click supply-chain campaign against South Korean targets, leveraging IE-based WebView, Ruby for persistence, and cloud services for C2.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.