March 16, 2023, 6:21 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

A unique difference with the past cases was discovered during the analysis of the Kimsuky group’s spear phishing URLs. Until now, the group used Fully Qualified Domain Names (FQDN) disguised as famous Korean web portals. An analysis of the URLs collected during the past two months revealed multiple new FQDNs including keywords related to certain Korean banks, instead of the past FQDNs disguised as web portals.


 


Unique characteristics of Kimsuky group’s spear phishing emails


The post Unique characteristics of Kimsuky …

analysis banks cases domain domain names emails kimsuky malware analysis names phishing phishing emails spear phishing urls web

Director, Cyber Risk

@ Kroll | South Africa

Security Engineer, XRM

@ Meta | New York City

Security Analyst 3

@ Oracle | Romania

Internship - Cyber Security Operations

@ SES | Betzdorf, LU

Principal Product Manager (Network/Security Management) - NetSec

@ Palo Alto Networks | Bengaluru, India

IT Security Engineer

@ Timocom GmbH | Erkrath, Germany