April 25, 2023, 11:36 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

The Tonto Team is a threat group that targets mainly Asian countries, and has been distributing Bisonal malware. AhnLab Security Emergency response Center (ASEC) has been tracking the Tonto Team’s attacks on Korean education, construction, diplomatic, and political institutions. Recent cases have revealed that the group is using a file related to anti-malware products to ultimately execute their malicious attacks.


Figure 1. Overall operation process

The Tonto Team’s involvement in the distribution of the CHM malware in Korea has been …

ahnlab anti-malware asec attacks bisonal cases center chm construction countries distribution dll dll side-loading education emergency file files institutions korea malicious malware malware analysis political process products response security team threat threat group tonto tonto team tracking

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Engineer 2

@ Oracle | BENGALURU, KARNATAKA, India

Oracle EBS DevSecOps Developer

@ Accenture Federal Services | Arlington, VA

Information Security GRC Specialist - Risk Program Lead

@ Western Digital | Irvine, CA, United States

Senior Cyber Operations Planner (15.09)

@ OCT Consulting, LLC | Washington, District of Columbia, United States

AI Cybersecurity Architect

@ FactSet | India, Hyderabad, DVS, SEZ-1 – Orion B4; FL 7,8,9,11 (Hyderabad - Divyasree 3)