Silent Chollima: North Korea’s Dual-Track Cyber Weapon
ID: 385c8d06-2460-5c18-b9ef-36a8ff3c2d47
STIX ID: report--385c8d06-2460-5c18-b9ef-36a8ff3c2d47
Feed Name: Brandefense Blog
**Silent Chollima (APT45)** is profiled as a North Korea–linked, hybrid APT that combines espionage and financially motivated cyber operations—using spear-phishing, VPN/web-application exploits, living‑off‑the‑land tools, cloud-based persistence and C2, and malware families such as DTrack, Maui, and KEYMARBLE—to target healthcare, defense, financial and cryptocurrency sectors from 2013 through 2025; the report reviews notable campaigns, evolving ransomware and supply‑chain tactics, and provides defensive recommendations (zero trust, patching, credential management, and threat hunting).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
