July 2025 Major APT Group Trends
Purpose and Scope This report covers nation-led threat groups, presumed to conduct cyber espionage or sabotage supported by certain governments. These groups are referred to as advanced persistent threat (APT) groups for the sake of convenience. Therefore, this report does not contain information on cybercriminal groups aiming to gain financial
Threat Trend Report on APT Groups – July 2024 Major Issues on APT Groups
Purpose and Scope This report covers nation-led threat groups presumed to conduct cyber espionage or sabotage under the support of the governments of certain countries, referred to as “Advanced Persistent Threat (APT) groups” for the sake of convenience. Therefore, this report does not contain information on cybercriminal groups aiming
Threat Trend Report on APT Groups – May 2024 Major Issues on APT Groups
The cases of major APT groups for May 2024 gathered from materials made public by security companies and institutions are as follows. 1. Andariel AhnLab SEcurity intelligence Center (ASEC) has been sharing Andariel group’s various attack cases against Korea.[1] The Nestdoor backdoor that the Andariel group had used
Threat Trend Report on APT Groups – April 2024 Major Issues on APT Groups
The cases of major APT groups for April 2024 gathered from materials made public by security companies and institutions are as follows. 1) APT28 (Forest Blizzard) Microsoft Threat Intelligence released the results of the investigation on the activities of APT28, a Russia-based threat actor.[1] This group has been
Threat Trend Report on APT Groups – March 2024 Major Issues on APT Groups
The cases of major APT groups for March 2024 gathered from materials made public by security companies and institutions are as follows. 1) Andariel ASEC announced that the Andariel group is launching attacks using IMON Client and NetClient (Korean asset management solutions).[1] The group used self-developed malware strains
Threat Trend Report on APT Groups – February 2024 Major Issues on APT Groups
The cases of major APT groups for February 2024 gathered from materials made public by security companies and institutions are as follows. 1) APT28 In January 2024, the United States government said it had shut down a botnet from the APT28 group suspected to be operated by the Main

