Tag: Konni Group

Konni Group Using Russian-Language Malicious Word Docs in Latest Attacks
News

Konni Group Using Russian-Language Malicious Word Docs in Latest Attacks

A fresh phishing attempt has been noticed, which uses a Microsoft Word document written in Russian to spread malware that can be used to obtain private data from Windows hosts that have been compromised. The activity is linked to a threat actor known as Konni, who is thought to have similarities with the North Korean cluster known as Kimsuky (also known as APT43). This campaign is based on a remote access trojan (RAT) that can be used to take control of compromised devices and extract data, according to an analysis released this week by Cara Lin, a researcher at Fortinet FortiGuard Labs. The cyber espionage group is well-known for its targeting of Russia, and their attack strategy involves using malicious documents read more Konni Group Using Russian-Language Malicious Word Docs ...