Press ESC to close

An Offer You Can Refuse: UNC2970 Backdoor Deployment Using Trojanized PDF Reader

Written by: Marco Galli, Diana Ion, Yash Gupta, Adrian Hernandez, Ana Martinez Gomez, Jon Daniels, Christopher Gardner Introduction In June 2024, Mandiant Managed Defense identified a cyber espionage group suspected to have a North Korea nexus, tracked by Mandiant under UNC2970. Later that month, Mandiant discovered additional phishing lures masquerading as an energy company and as an entity in the aerospace industry to target victims in these verticals. UNC2970 targets victims under the guise o… Read More

Source: Unnamed Source

Published on: September 17, 2024

Leave a Reply

Your email address will not be published. Required fields are marked *