Sector A02
2020-03-12 • NSHC • HACKING ACTIVITY OF SECTORA GROUP IN 2019
SectorA02 is one of the SectorA subgroups tracked by NSHC. In its review of 2019 activity, NSHC described the subgroup as pursuing both intelligence collection and financial objectives. SectorA02 repeatedly targeted South Korean government agencies and organizations connected to political and diplomatic activity, seeking high-level information, while some campaigns targeted financial companies and cryptocurrency-related businesses. Its initial-access methods centered on phishing and spearphishing, using malicious Hangul Word Processor, Microsoft Word, and Excel documents selected for the intended victim. NSHC also observed simple phishing, malicious scripts, and more elaborate social engineering through KakaoTalk. During 2019 the subgroup broadened collection beyond South Korea toward political activity in Europe, North America, and Southeast Asia, while continuing campaigns against financial and cryptocurrency targets. The reporting depicts a flexible espionage-oriented group able to adapt lure formats, social channels, and targeting to operational priorities.
-
26
Related Actors
-
284
Related Reports