Vendor: "We uhh, found this vulnerability you should patch"
Cookie: Wait, you forgot to mention you discovered this due to active nation-state exploitation and <actor> may had/have full access & pivoted in your network (you're fucked).
🚨 NBD, just a patch! 🚨
@aptwhatnow
Two U.S. Nationals Sentenced for Facilitating Fraudulent Remote Information Technology Worker Schemes to Generate Revenue for the Democratic People’s Republic of Korea
“These sentences hold accountable U.S nationals who enabled North Korea’s illicit efforts to infiltrate U.S. networks and profit on the back of U.S. companies,” said Assistant Attorney General for National Security John A. Eisenberg. “These defendants helped North Korean ‘IT workers’ masquerade as legitimate employees, compromising U.S. corporate networks and helping generate revenue for a heavily sanctioned and rogue regime. The National Security Division will continue to pursue those who, through deception and cyber-enabled fraud, threaten our national security.”
🔗: https://t.co/YyTELN2lBD
Vendor: "We uhh, found this vulnerability you should patch"
Cookie: Wait, you forgot to mention you discovered this due to active nation-state exploitation and <actor> may had/have full access & pivoted in your network (you're fucked).
🚨 NBD, just a patch! 🚨
@aptwhatnow
@aptwhatnow Thats right, 🇨🇳 [++] has/have been actively exploiting a vulnerability in SC for years which gave them full access to your systems. CW has decided to omit that from this post and the prior vuln that gave access.
@aptwhatnow@silascutler@campuscodi
Contrary to the quoted tweet, @sexinfochina is in fact the admin of the Chinese darknet market FreeCity. Behind the handle is Xiao He, a Chinese national who is a prolific launderer of DPRK stolen funds, supporter of DPRK IT Worker ops, and pusher of fake viagra.
Contrary to the quoted tweet, @sexinfochina is in fact the admin of the Chinese darknet market FreeCity. Behind the handle is Xiao He, a Chinese national who is a prolific launderer of DPRK stolen funds, supporter of DPRK IT Worker ops, and pusher of fake viagra.
Gen Threat Labs uncover evidence of rare cross-country coordination between Russia’s Gamaredon and North Korea’s Lazarus | https://t.co/YTx4672kdz @GenThreatLabs
ICYMI - DPRK's training video on making Civil Engineering profiles to perform fraudulent CIV-E work.
#DRPK#kimhasabigfacemole@aptwhatnow
https://t.co/mSKoIdVnDS