국가배후 해킹조직의 우리 국민·기업 해킹 공격 주의 권고
2026-07-30 • KRCERT • Warning of State-Sponsored Hacking Attacks Against Korean Citizens and Companies •
https://krcert.or.kr/kr/bbs/view.do?bbsId=B0000133&pageIndex=1&nttId=72144&menuNo=205020
Attachments
South Korean security authorities warn that state-sponsored hacking groups are targeting Korean individuals and companies through phishing emails disguised as resumes, recruitment proposals, donations, or investment materials. The attackers also compromise news, hospital, and poorly secured websites for watering-hole attacks that may exploit outdated electronic-signature, authentication, and keyboard-security software. Successful infections can expose browser credentials, documents, customer data, and trade secrets, spread to nearby systems, and support extortion. The advisory recommends rapid patching, multifactor authentication, network isolation, IOC-based monitoring, and stronger website and software supply-chain controls.