April 10, 2023, 12:56 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

On March 29, 2023, CrowdStrike announced that a threat group based in North Korea launched a supply chain attack through 3CX DesktopApp. [1] With this app, the threat actor installed an Infostealer in the target system.


AhnLab Security Emergency response Center (ASEC) previously announced a 3CX DesktopApp supply chain attack in the following blog post alongside mitigation measures. [2] This post will provide an analysis of the malware used in the attacks and logs of their infection in Korea collected …

3cx actor ahnlab analysis app asd asec attack attacks blog blog post center crowdstrike defense desktopapp emergency infection infostealer korea logs malware malware analysis march mitigation north north korea response security smart supply supply chain supply chain attack system target threat threat actor threat group

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC