The Winter Olympics this year is being held in Pyeongchang, South Korea. Talos have identified the samples, with moderate confidence, used in this attack. The infection vector is currently unknown as we continue to investigate. The samples analysed appear to perform only destructive functionality. There does not appear to be any exfiltration of data. The destructive nature of this malware aims to render the machine unusable by deleting shadow copies, event logs and trying to use PsExec & WMI to further move through the environment.”]
Source: https://blog.talosintelligence.com/2018/02/olympic-destroyer.html