ENKI WhiteHat has produced a follow-up report on "APT Down - The North Korea Files". Unlike previous reporting, we assess a much stronger link to UNC5221 than Kimsuky.
Additionally, the malware used by the attackers is linked to a 2022 incident targeting a South Korean financial institution.
See our findings and in-depth analysis:
https://t.co/26vDa37yF6
๐ After ACSC 2025 (https://t.co/wmYM9Luwwb) and all reviews, the Team Asia Finalists are confirmed!
๐ Meet the players:
Satoooon, jinu, wlswotmd, zolbooo, G0RiyA, 0nid, Yu_212, nella17, soon_haari, keymoon, mojashi, iwancof, physicube, lovely_epsilon, sin3point14, hiikunZ, daldaguri
Big thanks to everyone who joined, organized, and supported the journey ๐
๐ Next stop: ICC Tokyo 2025 โ see you in Japan! ๐ฏ๐ต
Official site: https://t.co/2gDYyt1S3e
Official X: https://t.co/ZOkzq67u1P
#acsc_asia
#icctokyo2025
#ctf
We just published "Unveil the evolution of Kimsuky targeting Android devices with newly discovered mobile malware".
Three new malware family that targets Android have been discovered, #FastFire, #FastViewer, and #FastSpy respectively.
#Kimsuky
https://t.co/xAPzhoEizW