Post B5ZHPrjcrAZZ3OIMmu by malwaretech@infosec.exchange
 (DIR) More posts by malwaretech@infosec.exchange
 (DIR) Post #B5Yge8us4p1y5hV3UO by malwaretech@infosec.exchange
       0 likes, 0 repeats
       
       I spent nearly 4 months investigating the inner workings of a North Korean state-sponsored hacking group. Here's what I found:- The group used generative AI tools to aid in almost every part of their operations.- They exfiltrated 26,584 cryptocurrency wallets from victim systems, with a combined value totaling as much $12 million dollars.- In several cases, the threat actors set up entire front companies to lure in developers via fake job posting, then infected them with malware.- The threat actors successfully pulled off a supply-chain attack by compromising a VS Code extension developer's system.đź”—  Full article: https://expel.com/blog/inside-lazarus-how-north-korea-uses-ai-to-industrialize-attacks-on-developers/
       
 (DIR) Post #B5Yknb2vG9oPl01s7U by Lee_Holmes@infosec.exchange
       0 likes, 0 repeats
       
       @malwaretech One of the things I love about this investigation is that it actually imposed cost:- Found malware: reported to AV vendors- Saw abuse of Cursor: reported to Cursor, got the accounts suspended- Saw abuse of ChatGPT: reported to OpenAI- Saw that a front website was implemented / hosted on Anima: reported to Anima, got the account suspendedProps on engaging like that.
       
 (DIR) Post #B5Yng8BqRmxI64KnI0 by gimulnautti@mastodon.green
       0 likes, 0 repeats
       
       @malwaretech ”Mythos is groundbreaking technology”, unless you count what every single hacking group has been doing the last few years…
       
 (DIR) Post #B5Yxo1qcuVVWHjoY3U by malwaretech@infosec.exchange
       0 likes, 0 repeats
       
       @johnbrown I have less than zero interest in justifying 4 months of my own extensive intelligence work to some dipshit tankie
       
 (DIR) Post #B5Yxte5u8eVILtdfBQ by malwaretech@infosec.exchange
       0 likes, 0 repeats
       
       @Lee_Holmes Thank you 🙏
       
 (DIR) Post #B5ZHPrjcrAZZ3OIMmu by malwaretech@infosec.exchange
       0 likes, 0 repeats
       
       @gimulnautti Before Mythos is was zero day exploits in general. Cybersecurity has always been fixated on novel, rare, and unrealistic attacks while ignoring the hacks that happen on a daily basis
       
 (DIR) Post #B5ZrLVD8FtVEO7JcAa by malwaretech@infosec.exchange
       0 likes, 0 repeats
       
       @johnbrown let’s not. I’d rather not take the dual HP and IQ loss from listening to your insane tankie conspiracy theories. I do actual analysis for a living and I came to my own conclusion based on my own first hand sourcing of data. Your beef with the US and your layman’s understanding of pop culture news stories about intelligence agencies is entirely irrelevant to me.