North Korean-linked group Kimsuky is using advanced malware and phishing techniques to target cryptocurrency wallets and sensitive data. Through deceptive VBScript files and detailed PowerShell payload, the group obfuscates malicious code, extracts data, and evades analysis by security researchers. The collected data is sent to a command-and-control server, which expands the group’s remote access for future attacks. Researchers suggest security measures and user education to guard against such sophisticated threats.

Hackers Weaponize KeePass Password Manager to Deliver Malware & Steal Passwords
Threat actors are targeting popular password manager, KeePass, to spread malware and extract sensitive credentials. The attacks involve tampered download links and trojanized versions of