APT trends report Q1 2022

2022-04-27 Kaspersky

https://securelist.com/apt-trends-report-q1-2022/106351/

Thumbnail for APT trends report Q1 2022

Kaspersky's Q1 2022 APT trends report describes a Lazarus-linked campaign using a trojanized DeFi Wallet application compiled in November 2021. The application installed a fully featured backdoor while posing as legitimate cryptocurrency wallet software, and Kaspersky found overlaps with other Lazarus tools. The operators used compromised South Korean web servers in a staged C2 setup, with one stage serving the backdoor and another communicating with implants; server logs showed infections at a global level.

Related Reports

2022-04-29 • 60% Match
#Trend #BlackBanshee #BlackAlicanto #T1082 #T1059.003 #T1090 #T1005 #T1070.004 #T1041 #T1113 #T1555 #T1560 #T1071.001 #T1112 #T1083 #T1204.001 #T1036 #T1027 #T1204.002 #T1071 #T1124 #T1204 #T1057 #T1059.005 #T1566.001 #T1547.001 #T1053.005 #T1132.001 #T1566 #T1059 #T1003 #T1105 #T1620 #T1486 #T1135 #T1078 #T1548 #T1190 #T1592 #T1049 #T1087 #T1589 #T1074.001 #T1591 #T1547 #T1068 #T1573 #T1095 #T1048 #T1608 #T1070 #T1056 #T1036.007 #T1614.001 #T1033 #T1110 #T1221 #T1132 #T1570 #T1021 #T1615 #T1482 #T1210 #T1069 #T1595 #T1039 #T1016.001
Shares tag: Trend • Published within a week
« Back