#Babyface

Malware/Tool

2018-12-20 • Hermit(隐士):针对朝鲜半岛的APT攻击活动披露

A modified remote-access Trojan variant deployed in the 2018 Hermit activity. It was installed through malicious documents, loaded an in-memory payload, contacted command-and-control infrastructure, and supported directory listing, file transfer, process control, and command execution.

Tagged Reports

« Back