lazarusholic

Everyday is lazarus.dayβ

2024 Activities Summary of SectorA groups

2025-07-15, NSHC
https://medium.com/@nshcthreatrecon/2024-activities-summary-of-sectora-groups-eng-bd7af32fb99b
#SectorA #SectorA01 #SectorA05

Contents

2024 Activities Summary of SectorA groups
- SectorA Group Activities
The Threat Research Lab classifies SectorA groups into 7 subgroups. These groups aim to collect advanced information related to the government activities such as politics and diplomatic activities from the South Korean government, and at the same time, carry out hacking activities worldwide to secure financial resources.
As a result of analyzing the activities of the SectorA group throughout the year 2024, it was found that the activities of the SectorA05 group were the most prominent, followed by the active activities of the SectorA01 group.
The SectorA05 group, known as Kimsuki by other security firms, actively conducts spear-phishing-based intelligence-gathering activities primarily targeting South Korean government agencies, defense, and diplomatic sectors. This group is skilled in social engineering techniques and appears to create customized malicious documents that actively reflect major domestic issues. They use a strategy of maintaining long-term infiltration through backdoors. These activities are …