North Korean hackers exploited Chrome zero-day to steal crypto
ID: d806dfe5-7af4-59d2-aa83-0d34619738cd
STIX ID: report--d806dfe5-7af4-59d2-aa83-0d34619738cd
Feed Name: TechCrunch Security News
Microsoft reported that North Korean-affiliated group Citrine Sleet exploited a previously unknown Chromium zero-day in August to target cryptocurrency organizations, using malicious websites and social engineering to lure victims and leveraging a separate Windows kernel vulnerability to install a rootkit and deploy AppleJeus malware to seize crypto assets; Google patched the Chromium flaw two days after the activity was first observed and Microsoft notified affected customers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
