⤷ Title: South Korean CSOs Under Cyberattack: 3-Year Study
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Fri, 14 Feb 2025 01:35:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT37 #Contagious Interview #Kimsuky #RambleOn Spyware #Reaper #RokRAT #SuperBear RAT #UCID902 #Velvet Chollima
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Fri, 14 Feb 2025 01:35:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT37 #Contagious Interview #Kimsuky #RambleOn Spyware #Reaper #RokRAT #SuperBear RAT #UCID902 #Velvet Chollima
Cybersecurity News
South Korean CSOs Under Cyberattack: 3-Year Study
Explore the impact of South Korean cyberattack threats on civil society organizations and their defenders in a detailed study.
⤷ Title: Jumping the Gap: APT37’s “Ruby Jumper” Campaign Weaponizes Cloud Storage and USBs to Breach Isolated Networks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 07:01:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #APT37 #Cybersecurity 2026 #RESTLEAF #Ruby Jumper #ScarCruft #SNAKEDROPPER #THUMBSBD #USB Malware #Velvet Chollima #VIRUSTASK #Zoho WorkDrive #Zscaler ThreatLabz
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 07:01:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #APT37 #Cybersecurity 2026 #RESTLEAF #Ruby Jumper #ScarCruft #SNAKEDROPPER #THUMBSBD #USB Malware #Velvet Chollima #VIRUSTASK #Zoho WorkDrive #Zscaler ThreatLabz
Penetration Testing Tools
Jumping the Gap: APT37’s "Ruby Jumper" Campaign Weaponizes Cloud Storage and USBs to Breach Isolated Networks
The DPRK-affiliated syndicate APT37 has augmented its arsenal dedicated to breaching air-gapped networks. The Zscaler ThreatLabz vanguard has
⤷ Title: Velvet Chollima Leaves Backend Keys Inside Critical GitLab Dead-Drop Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:16:41 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #cyber_espionage #EV Code Signing #GitLab Dead_Drop #infosec #Keylogger #Malware Analysis #OPSEC Failure #threat intelligence #Tralert FX #Velvet Chollima
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:16:41 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #cyber_espionage #EV Code Signing #GitLab Dead_Drop #infosec #Keylogger #Malware Analysis #OPSEC Failure #threat intelligence #Tralert FX #Velvet Chollima
Daily CyberSecurity
Velvet Chollima Leaves Backend Keys Inside Critical GitLab Dead-Drop Malware
A routine investigation into a low-detection installer has blown the doors off a highly organized, financially motivated cyber-espionage campaign. Orchestrated by a single operator or small team l…
⤷ Title: Velvet Ant Hid in Air-Gapped Network for 10 Years
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:49:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #China APT #cybersecurity #OpenSSH Compromise #Operation Highland #PAM Backdoor #Velvet Ant
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:49:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #China APT #cybersecurity #OpenSSH Compromise #Operation Highland #PAM Backdoor #Velvet Ant
Information Security News
Velvet Ant Hid in Air-Gapped Network for 10 Years
Sygnia exposes Operation Highland: China-linked Velvet Ant persisted for nearly 10 years in an air-gapped network by backdooring PAM and OpenSSH.
⤷ Title: Velvet Ant’s Operation Highland: A Decade Inside Critical Infrastructure
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 09:08:36 +0000
════════════════════════
⌗ Tags: #Cybercriminals #China_nexus threat actor #Critical Infrastructure #CVE_2024_20399 #OpenSSH backdoor #Operation Highland #PAM Backdoor #Sygnia #Velvet Ant
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 09:08:36 +0000
════════════════════════
⌗ Tags: #Cybercriminals #China_nexus threat actor #Critical Infrastructure #CVE_2024_20399 #OpenSSH backdoor #Operation Highland #PAM Backdoor #Sygnia #Velvet Ant
Daily CyberSecurity
Velvet Ant’s Operation Highland: A Decade Inside Critical Infrastructure
A China-nexus threat group known as Velvet Ant hid inside one organization’s network for nearly a decade. Sygnia’s incident response team uncovered the campaign and named it Operation …