Larva-25010 –  Analysis on the APT Down Threat Actor’s PC

Larva-25010 – Analysis on the APT Down Threat Actor’s PC

This report covers the seven posts on the breach analysis of APT Down, which were published in “Threat Notes” of AhnLab TIP after the release of the “APT Down: the North Korea Files” report, along with additional analysis.   Post on Aug 12, 2025, “APT DOWN – Analysis of Korean

Meterpreter Distributed to Vulnerable Server of Korean Medical Institution

Meterpreter Distributed to Vulnerable Server of Korean Medical Institution

While monitoring malware strains distributed to vulnerable servers, the ASEC analysis team discovered an attack case for PACS (Picture Archiving and Communication System) server used by Korean medical institutions. PACS is a system for digitally managing and transferring medical images of patients, which is used to check and interpret the