Blog | G5 Cyber Security

New Malware Uses GeoCities, North Korea Interest to Trick Victims

Researchers at Cylance have discovered a new advanced threat, dubbed Baijiu, that uses heightened interest in North Korea and the GeoCities web service to prey on victims. The ultimate goal of this attack is to deploy a set of espionage tools through a downloader called Typhoon and set of backdoors called Lionrock. Researchers say it’s likely widespread, though the company did not discover specific geographies or organizations are at risk. Researchers found at least 10 other examples of attacks using Geocities as a launching pad for malware.”]

Source: https://www.darkreading.com/attacks-breaches/new-malware-uses-geocities-north-korea-interest-to-trick-victims

Exit mobile version