#SHATTEREDGLASS

Malware/Tool

2024-07-25 • APT45: North Korea’s Digital Military Machine

SHATTEREDGLASS is a ransomware family tracked by Mandiant and identified in public research beginning in 2021. It has appeared in activity clusters suspected of links to APT45, a North Korean state-sponsored operator also known as Andariel, Onyx Sleet, Stonefly, and Silent Chollima. Mandiant assessed ransomware use by those clusters as plausible without assigning SHATTEREDGLASS directly to APT45. The family is therefore relevant to suspected North Korean financially motivated operations while retaining a separate, unconfirmed actor relationship.

Tagged Reports

« Back