October 2025 APT Group Trends

October 2025 APT Group Trends

Trends of Key APT Groups by Region   1)   North Korea North Korea-affiliated cyber threat groups have stolen cryptocurrency, credentials, and performed reconnaissance and remote control attacks through various malware and operations. They used Node.js-based malware and a multi-stage infection chain to target both Windows and macOS environments. Through their

September 2025 APT Group Trends

September 2025 APT Group Trends

Trends of Key APT Groups by Region   1)   North Korea   North Korea-linked APT groups have been intensively carrying out advanced spear-phishing and remote access attacks against the defense, military, and cryptocurrency sectors in South Korea. They have also introduced a new psychological deception technique using generative AI and

August 2025 Threat Trend Report on APT Groups

August 2025 Threat Trend Report on APT Groups

Purpose and Scope This report covers nation-led threat groups, presumed to conduct cyber espionage or sabotage supported by certain governments. These groups are referred to as advanced persistent threat (APT) groups for the sake of convenience. Therefore, this report does not contain information on cybercriminal groups aiming to gain financial

May 2025 APT Group Trends

May 2025 APT Group Trends

  Trends of major APT groups by country   1)   North Korea   The North Korean APT group has been targeting Ukrainian government agencies. This is different from the group’s typical attack targets, so further observation is required to determine whether this is a one-time attack or a strategic alliance

APT Group Trends in October 2024

APT Group Trends in October 2024

  The following are the main APT groups and their cases based on the analysis reports released by security companies and organizations in October 2024.   1.   Andariel   Symantec’s Threat Hunter Team has found evidence that the Andariel group is launching financially motivated attacks against companies in the United

Threat Trend Report on APT Groups – July 2024 Major Issues on APT Groups

Threat Trend Report on APT Groups – July 2024 Major Issues on APT Groups

Purpose and Scope   This report covers nation-led threat groups presumed to conduct cyber espionage or sabotage under the support of the governments of certain countries, referred to as “Advanced Persistent Threat (APT) groups” for the sake of convenience. Therefore, this report does not contain information on cybercriminal groups aiming

Threat Trend Report on APT Groups – February 2024 Major Issues on APT Groups

Threat Trend Report on APT Groups – February 2024 Major Issues on APT Groups

The cases of major APT groups for February 2024 gathered from materials made public by security companies and institutions are as follows.   1)   APT28   In January 2024, the United States government said it had shut down a botnet from the APT28 group suspected to be operated by the Main

2023 Dec. – Threat Trend Report on APT Groups

2023 Dec. – Threat Trend Report on APT Groups

The cases of major APT groups for December 2023 gathered from materials made public by security companies and institutions are as follows.   1) Andariel The Korean police announced that the Andariel group attacked 14 targets in Korea including companies in the defense industry, IT security companies, research centers, and