#CodeonToast

Incident/Operation

2024-10-15 • ASEC과 국가사이버안보센터(NCSC), 합동 보고서 배포 및 Microsoft 브라우저 0-DAY 발견 (CVE-2024-38178)

Operation Code on Toast is a June 2024 campaign attributed to APT37, also known as ScarCruft, that targeted a specific South Korean organization through a compromised domestic advertising server. Malicious code inserted into content delivered by a toast-ad program exploited a type-confusion flaw in the legacy Internet Explorer JavaScript engine, enabling zero-click remote code execution on affected Windows systems. The chain used a Ruby-based script to deploy ROKRAT, which supported remote commands and theft or transfer of data through cloud-storage services.

Tagged Reports

« Back