DPRK IT Workers | A Network of Active Front Companies and Their Links to China
SentinelLabs has identified multiple deceptive websites linked to businesses in China fronting for North Korea's fake IT workers scheme.
Read More
SentinelLabs has identified multiple deceptive websites linked to businesses in China fronting for North Korea's fake IT workers scheme.
This research explores how FIN7 has adopted automated attack methods and developed defense evasion techniques previously unseen in the wild.
SentinelLabs has identified four new CapraRAT APKs associated with suspected Pakistan state-aligned actor Transparent Tribe.
SentinelLabs has discovered a novel malware variant of AcidRain that could be targeting telecoms networks in Ukraine.
Doppelgänger, a sophisticated Russia-aligned operation, targets German public opinion with disinformation ahead of elections.
Cluster of threat groups continues on trajectory to consolidate with shared victims, TTPs and evolving malware.
China-aligned threat actors are increasingly involved in strategic intrusions in Africa, aiming to extend the PRC's influence across the continent.
Threat actors abuse Adobe Creative Cloud, Edge, and other executables vulnerable to DLL hijacking in campaign targeting the Southeast Asian gambling sector.
North Korean threat actors attempt to further missile program by compromising sanctioned Russian defense company with OpenCarrot backdoor.
A Brazilian threat actor is targeting users of over 30 Portuguese financial institutions with custom backdoors.