April 25, 2023, 11:36 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

The Tonto Team is a threat group that targets mainly Asian countries, and has been distributing Bisonal malware. AhnLab Security Emergency response Center (ASEC) has been tracking the Tonto Team’s attacks on Korean education, construction, diplomatic, and political institutions. Recent cases have revealed that the group is using a file related to anti-malware products to ultimately execute their malicious attacks.


Figure 1. Overall operation process

The Tonto Team’s involvement in the distribution of the CHM malware in Korea has been …

ahnlab anti-malware asec attacks bisonal cases center chm construction countries distribution dll dll side-loading education emergency file files institutions korea malicious malware malware analysis political process products response security team threat threat group tonto tonto team tracking

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC