Kimsuky APT Uses forceCopy Malware to Steal Browser Credentials

The North Korea-linked hacking group Kimsuky has been observed conducting spear-phishing attacks to deploy a new information-stealing malware called forceCopy, according to a report from the AhnLab Security Intelligence Center (ASEC). Attack Methodology The campaign begins with phishing emails containing Windows shortcut (LNK) files disguised as Microsoft Office or PDF documents. When opened, these files… Continue reading Kimsuky APT Uses forceCopy Malware to Steal Browser Credentials