Kimsuky Uses Malicious LNK Files to Drop Python Backdoor
Kimsuky is using multi-stage malicious LNK files to deploy a Python-based backdoor, adding new intermediate scripts while keeping the final payload logic lar...
North Korean APT group focused on intelligence gathering, targeting South Korean government, think tanks, and nuclear energy organizations.
Also known as: kimsuky, velvet chollima, emerald sleet, thallium, black banshee, krypton, baby shark
Kimsuky is using multi-stage malicious LNK files to deploy a Python-based backdoor, adding new intermediate scripts while keeping the final payload logic lar...