Wednesday, May 3, 2023

North Korea's ScarCruft Deploys RokRAT Malware via LNK File Infection Chains

The North Korean threat actor known as ScarCruft started experimenting with oversized LNK files as a delivery route for RokRAT malware as early as July 2022, the same month Microsoft began blocking macros across Office documents by default. "RokRAT has not changed significantly over the years, but its deployment methods have evolved, now utilizing archives containing LNK files that initiate
http://dlvr.it/SnRvWK

No comments:

Post a Comment

Tenable Introduces Visibility Across IT, OT, and IoT Domains - Dark Reading

Tenable Introduces Visibility Across IT, OT, and IoT Domains  Dark Reading http://dlvr.it/T3S1jZ