Quoted post unavailable.
Countering threats from North Korea
11–20 of 172 posts
Re: Countering threats from North Korea
#12Re: Countering threats from North Korea
#13> Careful to protect their exploits, the attackers deployed multiple safeguards to make it difficult for security teams to recover any of the stages. These safeguards included: * Only serving the iframe at specific times, presumably when they knew an intended target would be visiting the site. * In some email campaigns the targets received links with unique IDs. This was potentially used to enforcea one-time-click po…
Re: Countering threats from North Korea
#14Re: Countering threats from North Korea
#15I am so fucking done with the internet turning into a trash pile of scams and exploits.
Re: Countering threats from North Korea
#16I am so fucking done with the internet turning into a trash pile of scams and exploits.
Countries have been doing terrible things to people since long before the internet
Re: Countering threats from North Korea
#17Re: Countering threats from North Korea
#18Re: Countering threats from North Korea
#19Earlier quoted context omitted.
We see some of this with just normal spear phishing against companies. The "single click" thing is reasonably common, it makes things a bit harder to catch as often the clickthrough will change to whatever is being spoofed in the first place. A homophone ycornbinator.com would serve the malware first time, then next time it would send a permanent redirect. Unique IDs you'll see in things like spam SMS, both to work a…
I am receiving increased SMS spam past week. Is connected to this exploit? Msgs are all different domains with unique ID appended.
Re: Countering threats from North Korea
#20> Careful to protect their exploits, the attackers deployed multiple safeguards to make it difficult for security teams to recover any of the stages. These safeguards included: * Only serving the iframe at specific times, presumably when they knew an intended target would be visiting the site. * In some email campaigns the targets received links with unique IDs. This was potentially used to enforcea one-time-click po…