Remove 03
Remove 2024 Remove Government Remove Presentation Remove Security
article thumbnail

North Korea-linked Kimsuky used a new Linux backdoor in recent attacks

Security Affairs

Researchers from South Korean security firm S2W first uncovered the compaign in February 2024, the threat actors were observed delivering a new malware family named Troll Stealer using Trojanized software installation packages. Troll Stealer can also copy the GPKI (Government Public Key Infrastructure) folder on infected computers.