US reveals details of North Korean HOPLIGHT hacking programs

The US government has released a security report detailing new malware used by APT Lazarus, a group previously associated with the North Korean government.

 US reveals details of North Korean HOPLIGHT hacking programs

Specifically, the Department of Homeland Security (DHS) and the Federal Bureau of Investigation (FBI) issued a joint alert on this Trojan program, which was discovered when tracking the online activity of APT Lazarus, also known as Hidden Cobra.

According to the authorities, a malware risk report (MAR) was issued to allow the defense of US computer networks. And prevent users and organizations from being exposed to malicious activity coming from the North Korean government.
The report also reveals a comprehensive analysis of 9 executable files that were infected with malicious software, including 7 proxy applications that disguise web traffic between Trojan and its operators. Both of these proxy applications are used by hackers to create "fake TLS protocol sessions using valid public SSL certificates, to hide network connections with remote malicious actors.
 A complete analysis of each of the nine malware strains and a report by the US authorities on the behavior of this group of North Korean hackers is available through the following link: Malware Analysis Report





















Share this

Related Posts

:)
:(
hihi
:-)
:D
=D
:-d
;(
;-(
@-)
:P
:o
:>)
(o)
:p
:-?
(p)
:-s
(m)
8-)
:-t
:-b
b-(
:-#
=p~
$-)
(y)
(f)
x-)
(k)
(h)
cheer