N. Korea-linked Kimsuky Shifts to Compiled HTML Help Files in Ongoing Cyberattacks

[ad_1] î ‚Mar 24, 2024î „NewsroomArtificial Intelligence / Cyber Espionage The North Korea-linked threat actor known as Kimsuky (aka Black Banshee, Emerald Sleet, or Springtail) has been observed shifting its tactics, leveraging Compiled HTML Help (CHM) files as vectors to deliver malware for harvesting sensitive data. Kimsuky, active since at least 2012, is known to target entities…

Read More

Russian SVR-Linked APT29 Targets JetBrains TeamCity Servers in Ongoing Attacks

[ad_1] Threat actors affiliated with the Russian Foreign Intelligence Service (SVR) have targeted unpatched JetBrains TeamCity servers in widespread attacks since September 2023. The activity has been tied to a nation-state group known as APT29, which is also tracked as BlueBravo, Cloaked Ursa, Cozy Bear, Midnight Blizzard (formerly Nobelium), and The Dukes. It’s notable for…

Read More