Threats Tagged 'north korea'
View all threats tagged with 'north korea'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'north korea'
Click on any threat for detailed analysis and mitigation recommendations
Integrating AI into Attack Operations, From AI-Generated Decoy Documents to a Local LLM 0 The Kimsuky threat group has incorporated artificial intelligence into its attack operations, using local large language models such as Ollama, GPT4All, and Msty. Their campaign, named Operation GitPower, targets foreign diplomatic missions and sectors including military, security, and virtual assets. Attacks involve spear phishing with malicious LNK files in ZIP archives that execute obfuscated PowerShell scripts. The group abuses Git-based repositories for command-and-control infrastructure and distributes encrypted AsyncRAT payloads disguised as image files via GitHub. Linguistic evidence links these operations to North Korean state-sponsored actors under the Reconnaissance General Bureau. Join the discussion | AlienVault OTX General | 08/10/2026, 13:45:54 UTC Added: 08/10/2026, 15:56:14 UTC |
Showing 1 to 1 of 1 result