DPRK state-linked cyber actors conduct software supply chain attacks [Monday, November 27, 2023]

DPRK state-linked cyber actors conduct software supply chain attacks [Monday, November 27, 2023]
https://www.securitricks.com/content/images/size/w600/format/webp/2023/12/ATTACK-REPORT-LOGO-2.png
Report

DPRK state-linked cyber actors conduct software supply chain attacks

Description :
DPRK state-linked cyber actors conduct software supply chain attacks Overview The National Intelligence Service (NIS) of the Republic of Korea (ROK) and the National Cyber Security Centre (NCSC) of the United Kingdom (UK) have identified Democratic People’s Republic of Korea (DPRK) state-linked cyber actors targeting software supply chain products, widely used by government organisations, financial institutions and defence industry companies globally.

Published :
2023-11-27T16:20:44.764Z

Created :
2023-11-27T16:20:44.764Z

Modified :
2023-11-27T16:31:51.787Z

Tags

  • dprk
  • 3cx

Indicators

Domains :
  • akamaitechcloudservices.com
  • azureonlinestorage.com
  • officestoragebox.com
  • msedgepackageinfo.com
  • sourceslabs.com
  • msstorageboxes.com
  • visualstudiofactory.com
  • azuredeploystore.com
  • glcloudservice.com
  • officeaddons.com
  • pbxphonenetwork.com
  • pbxcloudeservices.com
  • msstorageazure.com
  • sbmsa.wiki
  • pbxsources.com
  • zacharryblogs.com
Hashes :
  • 6c121f2b2efa6592c2c22b29218157ec9e63f385e7a1d7425857d603ddef8c59
  • e6bbc33815b9f20b0cf832d7401dd893fbc467c800728b5891336706da0dbcec
  • a64fa9f1c76457ecc58402142a8728ce34ccba378c17318b3340083eeb7acc67
Attacks Pattern :
  • TA0011
  • T1195
  • T1189
  • T1041
External References :

You can download the txt file containing the indicators by clicking on the button below:

About the author
Julien B.

Securitricks

Up-to-Date Cybersecurity Insights & Malware Reports

Securitricks

Great! You’ve successfully signed up.

Welcome back! You've successfully signed in.

You've successfully subscribed to Securitricks.

Success! Check your email for magic link to sign-in.

Success! Your billing info has been updated.

Your billing was not updated.