North Korean hackers return, target infosec researchers in new operation

-


In January, Google and Microsoft outed what they mentioned was North Korean government-sponsored hackers concentrating on safety researchers. The hackers spent weeks utilizing pretend Twitter profiles—purportedly belonging to vulnerability researchers—earlier than unleashing an Internet Explorer zero-day and a malicious Visual Studio Project, each of which put in customized malware.

Now, the identical hackers are again, a Google researcher said on Wednesday, this time with a new batch of social media profiles and a pretend firm that claims to supply offensive safety providers, together with penetration testing, software program safety assessments, and software program exploits.

Once extra with feeling

The homepage for the pretend firm is modern and appears no completely different from numerous actual safety corporations all around the world.

The hackers additionally cooked up greater than a dozen new social media profiles that presupposed to belong to recruiters for safety corporations, safety researchers, and numerous staff of SecuriElite, the pretend safety firm. The work that went into creating the profiles was pretty spectacular.

Next-level trolling

My favourite is that this Twitter profile of @seb_lazar, which presumably corresponds to Sebastian Lazarescue, one of many pretend researchers working for the pretend SecuriElite.

Security individuals all know that Lazarus is the title used to establish hackers backed by the North Korean authorities. Developing detailed Twitter and LinkedIn profiles for a researcher along with your pretend safety firm, naming him Sebastian Lazarescue, and having him retweeting a lot of top-flight safety researchers—some who work for Google—is next-level trolling.

Adam Weidemann, a researcher with Google’s Threat Analysis Group, cautions that the hackers’ previous success in luring researchers to web sites internet hosting an IE zero-day means the group must be taken significantly.

“Based on their activity, we continue to believe that these actors are dangerous, and likely have more 0-days,” he wrote.





Source link

Ariel Shapiro
Ariel Shapiro
Uncovering the latest of tech and business.

Latest news

Gravel Running Shoes Are the Best Suitcase Shoe

“In general, we are noticing many of these shoes have more of a road running influence than they...

As Key Talent Abandons Apple, Meet the New Generation of Leaders Taking On the Old Guard

Start the music. Players walk clockwise in a circle. When the music stops, everyone sits in a chair....

This AI Model Can Intuit How the Physical World Works

The original version of this story appeared in Quanta Magazine.Here’s a test for infants: Show them a glass...

Lenovo’s Legion Go 2 Is a Good Handheld for Power Users

The detachable controllers go a long way towards making the device more portable and usable. The screen has...

Why Tehran Is Running Out of Water

This story originally appeared on Bulletin of the Atomic Scientists and is part of the Climate Desk collaboration.During...

Move Over, MIPS—There’s a New Bike Helmet Safety Tech in Town

Over the course of several hours and a few dozen trail miles, I had little to say about...

Must read

You might also likeRELATED
Recommended to you