Dec. 8, 2023, 5:06 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

The Kimsuky group’s activities in October 2023 decreased slightly in comparison to their overall activities in September. One phishing domain was discovered, but because it uses the BabyShark infrastructure, it was classified as the BabyShark type. There was also a compound type where FlowerPower and RandomQuery were distributed simultaneously. Finally, more changes to the FlowerPower system via script fragmentation were observed.



2023_Oct_Threat Trend Report on Kimsuky Group


The post 2023 Oct – Threat Trend Report on Kimsuky Group appeared first …

babyshark classified compound distributed domain flowerpower infrastructure kimsuky malware analysis october phishing randomquery report september threat trend

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC