#OlympicDestroyer

Incident/Operation

2018-03-08 • OlympicDestroyer is here to trick the industry

OlympicDestroyer is destructive, credential-stealing, self-propagating malware used against infrastructure supporting the 2018 Pyeongchang Winter Olympics. The attack temporarily disrupted display systems, Wi-Fi, and the official website, preventing visitors from printing tickets, and also affected companies working with the Games. Its main module operated as a network worm with several components. Deliberately planted similarities to multiple threat sets created conflicting attribution signals, leaving the actor behind the operation unresolved despite its severe operational impact.

Tagged Reports

« Back