cognitive cybersecurity intelligence

News and Analysis

Search

North Korean Hackers Weaponizing ZIP Files To Execute Malicious PowerShell Scripts

Security researchers discovered a sophisticated attack by North Korean hacking group APT37, targeting various countries. Their method involves phishing emails with ZIP attachments concealing malicious LNK files that deploy the RokRat remote access trojan. This multi-stage infection chain uses PowerShell to extract payloads and operates filelessly, evading detection and enabling extensive espionage capabilities.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts