Feds Warn of North Korean Cyberattacks on US Critical Infrastructure
ID: adbcc6de-57f9-5a54-9227-9d029abdde4a
STIX ID: report--adbcc6de-57f9-5a54-9227-9d029abdde4a
Feed Name: Dark Reading
The report details a US government joint advisory on Andariel (aka APT45 / Onyx Sleet), a North Korean state-linked cyber-espionage group that is stealing military and technical intellectual property from defense, aerospace, nuclear, and engineering organizations while using ransomware attacks against US healthcare to fund operations; the advisory lists 41 exploited CVEs (including Log4Shell and MOVEit), nearly two dozen custom tools and implants, observed TTPs, provided IOCs, and recommended mitigations and defensive actions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
