Summary: 2025/04/24 13:16
First reported date: 2017/02/07
Inquiry period : 2025/03/25 13:16 ~ 2025/04/24 13:16 (1 months), 21 search results
전 기간대비 29% 높은 트렌드를 보이고 있습니다.
전 기간대비 상승한 Top5 연관 키워드는 lnk North Korea DPRK cti Konni 입니다.
악성코드 유형 Remcos RAT 도 새롭게 확인됩니다.
공격자 Gamaredon 도 새롭게 확인됩니다.
공격기술 Backdoor 캠페인 Phishing 도 새롭게 확인됩니다.
기관 및 기업 AhnLab South Korea SECUI Cisco ESTsecurity Genian 경찰청 도 새롭게 확인됩니다.
기타 slides Email URL Browser intelligence 등 신규 키워드도 확인됩니다.
* 최근 뉴스기사 Top3:
ㆍ 2025/04/23 Malicious LNK Disguised as a Notification
ㆍ 2025/04/22 Malicious LNK Disguised as Notices
ㆍ 2025/04/10 북한 해킹 그룹 Konni(코니)에서 만든 악성코드-ECRM.M.hwp.lnk(<-가칭,2025.3.24)
Trend graph by period
Related keyword cloud
Top 100# | Trend | Count | Comparison |
---|---|---|---|
1 | lnk | 21 | ▲ 6 (29%) |
2 | North Korea | 15 | ▲ 7 (47%) |
3 | DPRK | 14 | ▲ 9 (64%) |
4 | cti | 13 | ▲ 8 (62%) |
5 | Malware | 11 | ▼ -1 (-9%) |
6 | Konni | 8 | ▲ 1 (13%) |
7 | Campaign | 6 | ▲ 4 (67%) |
8 | Kimsuky | 5 | ▲ 2 (40%) |
9 | RokRAT | 4 | ▲ 3 (75%) |
10 | 북한 | 4 | ▼ -1 (-25%) |
11 | 그룹 | 3 | ▲ 2 (67%) |
12 | 위장 | 3 | ▲ 2 (67%) |
13 | APT | 3 | ▲ 2 (67%) |
14 | hacking | 3 | ▼ -2 (-67%) |
15 | 악성코드 | 3 | ▼ -1 (-33%) |
16 | AhnLab | 3 | ▲ new |
17 | APT37 | 3 | ▲ 2 (67%) |
18 | slides | 2 | ▲ new |
19 | 공격 | 2 | ▲ 1 (50%) |
20 | 2 | ▲ new | |
21 | South Korea | 2 | ▲ new |
22 | URL | 2 | ▲ new |
23 | 해킹 | 2 | ▼ -1 (-50%) |
24 | Browser | 2 | ▲ new |
25 | 김수 | 2 | - 0 (0%) |
26 | intelligence | 2 | ▲ new |
27 | malicious | 2 | - 0 (0%) |
28 | Remcos | 2 | ▲ new |
29 | Backdoor | 2 | ▲ new |
30 | NetWireRC | 2 | ▲ 1 (50%) |
31 | Gamaredon | 2 | ▲ new |
32 | 자간 | 1 | ▲ new |
33 | 협력 | 1 | ▲ new |
34 | Dive | 1 | ▲ new |
35 | Into | 1 | ▲ new |
36 | 공유 | 1 | ▲ new |
37 | MultiStage | 1 | ▲ new |
38 | 코니 | 1 | ▲ new |
39 | GitHub | 1 | ▲ new |
40 | Package | 1 | ▲ new |
41 | Python | 1 | ▲ new |
42 | Notification | 1 | ▲ new |
43 | 사례 | 1 | ▲ new |
44 | SECUI | 1 | ▲ new |
45 | 주요 | 1 | ▲ new |
46 | Deep | 1 | ▲ new |
47 | 대상 | 1 | ▲ new |
48 | 최신 | 1 | ▲ new |
49 | 위협 | 1 | ▲ new |
50 | 수해 | 1 | ▲ new |
51 | 한글 | 1 | - 0 (0%) |
52 | 탈취 | 1 | ▲ new |
53 | 문서 | 1 | - 0 (0%) |
54 | hwp | 1 | - 0 (0%) |
55 | 정보 | 1 | ▲ new |
56 | 고지서 | 1 | ▲ new |
57 | Zipped | 1 | ▲ new |
58 | 캠페인 | 1 | ▲ new |
59 | ECRM | 1 | - 0 (0%) |
60 | Talos | 1 | ▲ new |
61 | 신상 | 1 | ▲ new |
62 | 성범죄자 | 1 | ▲ new |
63 | Exploit | 1 | - 0 (0%) |
64 | target | 1 | - 0 (0%) |
65 | Report | 1 | ▼ -1 (-100%) |
66 | Phishing | 1 | ▲ new |
67 | Cisco | 1 | ▲ new |
68 | Criminal | 1 | ▲ new |
69 | ESTsecurity | 1 | ▲ new |
70 | Distribution | 1 | ▲ new |
71 | 유포 | 1 | ▲ new |
72 | 논문 | 1 | ▲ new |
73 | 학술 | 1 | ▲ new |
74 | d182834a984c9f5b44ea0aca5786223a78138ff23d33362ab699c76bf6987261 | 1 | ▲ new |
75 | 정보공개 | 1 | ▲ new |
76 | Analysis | 1 | - 0 (0%) |
77 | Password | 1 | ▲ new |
78 | Police | 1 | - 0 (0%) |
79 | BAT | 1 | ▲ new |
80 | RAR | 1 | ▲ new |
81 | file | 1 | ▲ new |
82 | Korea | 1 | ▲ new |
83 | South | 1 | ▲ new |
84 | Targets | 1 | ▲ new |
85 | Genian | 1 | ▲ new |
86 | RAT | 1 | ▲ new |
87 | 사칭 | 1 | ▲ new |
88 | 국가인권위 | 1 | ▲ new |
89 | 경찰청 | 1 | ▲ new |
90 | autoit | 1 | ▲ new |
91 | 단체 | 1 | ▼ -1 (-100%) |
92 | Persistence | 1 | ▲ new |
93 | Stealth | 1 | ▲ new |
94 | ASEC | 1 | ▲ new |
Special keyword group
Top 5
Country & Company
This is a country or company that is an issue.
Keyword | Average | Label |
---|---|---|
North Korea |
|
15 (34.1%) |
DPRK |
|
14 (31.8%) |
북한 |
|
4 (9.1%) |
AhnLab |
|
3 (6.8%) |
South Korea |
|
2 (4.5%) |
Threat info
Last 5SNS
(Total : 17)DPRK North Korea Malware Konni Kimsuky Campaign RokRAT 북한 APT37 APT NetWireRC 해킹 악성코드 hacking South Korea GitHub Password SECUI AhnLab Attacker Exploit 유포 Distribution ESTsecurity Cisco Gamaredon Phishing Remcos Report Backdoor target 경찰청 Police Genian 캠페인 RAT Criminal
News
(Total : 4)Malware intelligence Email Browser AhnLab Remcos 북한 악성코드 Campaign hacking Konni North Korea Gamaredon Backdoor
No | Title | Date |
---|---|---|
1 | Malicious LNK Disguised as a Notification - Malware.News | 2025.04.23 |
2 | Malicious LNK Disguised as Notices - ASEC BLOG | 2025.04.22 |
3 | 북한 해킹 그룹 Konni(코니)에서 만든 악성코드-ECRM.M.hwp.lnk(<-가칭,2025.3.24) - Malware.News | 2025.04.10 |
4 | Gamaredon campaign abuses LNK files to distribute Remcos backdoor - Cisco Talos / Guilherme Venere / malpedia | 2025.03.28 |
Additional information
No | Title | Date |
---|---|---|
1 | Hackers exploiting vulnerabilities at higher rates, reports Verizon - Malware.News | 2025.04.24 |
2 | 북한 해커, 하루 만에 1900억원 넘게 털었다 - 시큐리티팩트 | 2025.04.24 |
3 | 2025 State of the SOC Report - Malware.News | 2025.04.24 |
4 | Power Parasites: Job & Investment Scam Campaign Targets Energy Companies and Major Brands - Malware.News | 2025.04.24 |
5 | Shopify faces privacy lawsuit for collecting customer data - Malware.News | 2025.04.24 |
View only the last 5 |
No | Title | Date |
---|---|---|
1 | Malicious LNK Disguised as a Notification - Malware.News | 2025.04.23 |
2 | Malicious LNK Disguised as Notices - ASEC BLOG | 2025.04.22 |
3 | Windows Shell Link Vulnerability ZDI-CAN-25373: Detecting Hidden Commands - Malware.News | 2025.03.20 |
4 | 북한 해킹 그룹 Konni(코니)에서 만든 사이버범죄 신고시스템 사칭 악성코드-ECRM.hwp.lnk(2025.3.11) - Malware.News | 2025.03.14 |
5 | 2024-10-25 HeptaX - Unauthorized RDP Connections. Nalicious LNK. > Powershell > Bat files Samples - Malware.News | 2024.10.29 |
View only the last 5 |
No | URL | CC | ASN Co | Reporter | Date |
---|---|---|---|---|---|
1 | http://193.233.48.64/Downloads/test.pdf.lnk lnk | RU ![]() | OOO FREEnet Group | DaveLikesMalwre | 2025.04.22 |
2 | https://cpcalendars.auiesce.ru/Downloads/Commercial_Proposal_Request.pdf.lnk lnk xml-opendir | US ![]() | DaveLikesMalwre | 2025.04.20 | |
3 | https://asd.tyamile.ru/Downloads/Commercial_Proposal_Request.pdf.lnk Emmenhtal lnk xml-opendir | US ![]() | CLOUDFLARENET | DaveLikesMalwre | 2025.04.20 |
4 | https://ki46-mailscanner.000-0x2autxx-8yhx.cc/Downloads/Commercial_Proposal_Request.pdf.lnk Emmenhtal lnk xml-opendir | US ![]() | CLOUDFLARENET | DaveLikesMalwre | 2025.04.20 |
5 | https://cpcontacts.auiesce.ru/Downloads/Commercial_Proposal_Request.pdf.lnk Emmenhtal lnk xml-opendir | US ![]() | DaveLikesMalwre | 2025.04.20 | |
View only the last 5 |