news.mlab.sh
Back to the feed
threat-intel

Kimsuky targets organizations with PebbleDash-based tools

High
Image: Securelist
Summary

This report details the ongoing activity of the Kimsuky threat actor group, also known as APT43, who have been utilizing a PebbleDash-based malware platform to conduct targeted attacks. The group has significantly evolved its tactics, incorporating advanced tools like VSCode Tunneling, LLMs, and the Rust programming language, alongside established techniques like spear-phishing. Kimsuky’s campaigns primarily target organizations in South Korea, Brazil, and Germany, focusing on sectors including defense and government, and have been active for over a decade.

Read the full article at Securelist

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.