logo

NSA, FBI Alert on N. Korean Hackers Spoofing Emails from Trusted Sources

ID: bbb4306b-7722-5f98-80f5-9e785c143363

STIX ID: report--bbb4306b-7722-5f98-80f5-9e785c143363

Feed Name: The Hacker News

Threat Score
82/100

Date Published: 2024-05-03

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

The U.S. NSA, FBI, and State Department published a joint advisory warning that North Korean APT Kimsuky (aka TA427) has been exploiting weak or misconfigured DMARC policies since December 2023 to send spoofed emails impersonating trusted parties and conduct long-running social-engineering campaigns against foreign-policy experts; organizations are advised to enforce DMARC (quarantine or reject) and configure aggregate reporting to mitigate delivery of spoofed messages.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.