#kimsuky

7 posts · Last used 3d

Back to Timeline
CyberWorldOps @cyberworldops@infosec.exchange · 3d ago
Genians has documented Kimsuky, a North Korean unit under the Reconnaissance General Bureau, building an offline AI stack on its own infrastructure. The group is not training custom models but assembling and testing existing AI tools to automate phishing, malware creation, and data exfiltration. #Kimsuky #ThreatIntelligence #StateSponsored #AIsecurity https://cyberworldops.eu/en/kimsuky-prepares-an-offline-ai-stack-to-enhance-phishing-malware-and
0
0
0
lazarusholic @lazarusholic@infosec.exchange · Jul 28, 2026
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Jul 26, 2026
Replying to @security_crawler_carl@infosec.exchange
ENKI WhiteHat and AhnLab documented the operation. Kimsuky remains sanctioned by the U.S. government since 2023. The threat actor has not filed an appeal. The threat actor will not file an appeal. Audit your groupware vendors and their SaaS environments for unauthorized access and scan for Gomir infections immediately. Reward: You've received a Deprecated Trust Anchor. It does nothing. #APT43 #Kimsuky #SouthKorea #CyberSecurity #Malware #CompromisedAndCounted (2/2)
0
0
0
lazarusholic @lazarusholic@infosec.exchange · Jul 21, 2026
0
0
0

You've seen all posts