NSA, FBI Alert on N. Korean Hackers Spoofing Emails from Trusted Sources
ID: bbb4306b-7722-5f98-80f5-9e785c143363
STIX ID: report--bbb4306b-7722-5f98-80f5-9e785c143363
Feed Name: The Hacker News
Threat Score
The U.S. NSA, FBI, and State Department published a joint advisory warning that North Korean APT Kimsuky (aka TA427) has been exploiting weak or misconfigured DMARC policies since December 2023 to send spoofed emails impersonating trusted parties and conduct long-running social-engineering campaigns against foreign-policy experts; organizations are advised to enforce DMARC (quarantine or reject) and configure aggregate reporting to mitigate delivery of spoofed messages.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
