#ParsedReport #CompletenessHigh
09-09-2026
Emergence of New LNK Malware from the Kimsuky Group Operating Function-Specific C2 Servers
https://alyacofficialblog.tistory.com/5777
Report completeness: High
Actors/Campaigns:
Kimsuky (motivation: cyber_espionage)
Threats:
Smishing_technique
Dead_drop_technique
Nircmd_tool
Lolbin_technique
Trojan.bat.agent
Victims:
Domestic organizations
Geo:
North korea
TTPs:
Tactics: 4
Technics: 0
IOCs:
File: 16
Command: 1
Path: 3
Url: 5
Hash: 4
Soft:
curl, WordPress, Dropbox, OpenSSH, dows File Explorer and
Algorithms:
rc4, md5, aes-256, base64
Languages:
powershell
Post #32265
28