November 2025 APT Group Trends
Trends of Key APT Groups by Region 1) North Korea The attack techniques of threat actors suspected to be based in North Korea are continuously evolving. In the case of malware distribution, threat actors are increasingly using a JSON-based cloud storage service instead of traditional email attachments or
May 2025 APT Group Trends
Trends of major APT groups by country 1) North Korea The North Korean APT group has been targeting Ukrainian government agencies. This is different from the group’s typical attack targets, so further observation is required to determine whether this is a one-time attack or a strategic alliance
April 2025 APT Group Trends
Trends of major APT groups by country 1) North Korea Since November 2024, the North Korean APT group has been exploiting the vulnerability of South Korean Internet financial security software. Similar attacks have been carried out in the past, and the threat actors have been launching attacks
APT Group Trends in October 2024
The following are the main APT groups and their cases based on the analysis reports released by security companies and organizations in October 2024. 1. Andariel Symantec’s Threat Hunter Team has found evidence that the Andariel group is launching financially motivated attacks against companies in the United
Threat Trend Report on APT Groups – March 2024 Major Issues on APT Groups
The cases of major APT groups for March 2024 gathered from materials made public by security companies and institutions are as follows. 1) Andariel ASEC announced that the Andariel group is launching attacks using IMON Client and NetClient (Korean asset management solutions).[1] The group used self-developed malware strains
Threat Trend Report on APT Groups – February 2024 Major Issues on APT Groups
The cases of major APT groups for February 2024 gathered from materials made public by security companies and institutions are as follows. 1) APT28 In January 2024, the United States government said it had shut down a botnet from the APT28 group suspected to be operated by the Main

