#dprk #apt
(대외보안)0223_주미한국대사관_비공개_정책간담회_계획안.pdf.lnk
1f378c0efc13669dada1fe340c6837bd
@strikereadylabs.com
https://strikeready.com/blog.html Download live malware samples mentioned here: https://github.com/StrikeReady-Inc/samples If you prefer marketing (our product is great!) subscribe to our main page @strikeready.com
#dprk #apt
(대외보안)0223_주미한국대사관_비공개_정책간담회_계획안.pdf.lnk
1f378c0efc13669dada1fe340c6837bd
#apt
db1b11b63d631e2d0cebdefb322c2e7a
Letter to Indian Coast Guards by Def Secy.xlam
"pointless calculations"
info.updates-pbi.workers[.]dev
#susp #apt #opendir
microsoft-pakistan.ptcl-gov-pk.workers[.]dev/
cert UA article on the below cert.gov.ua/article/6287...
4ad8d263065e46d0e2fd4183f89258ac
Weapons requirements for the Kuwait Air Force.lnk
3f25c60d96f9cbbca7fd19278545207b
دعوة للمشاركة.lnk
#susp #apt
Algerian Ukrainian proposals for cooperation. zip c73c308a137ff7805577042cc9e923e1
lnk: desktop-jm38b85
overlaps with phish against Mongolia
Хятад улстай хамтын ажиллагаагаа өргөжүүлэх төсөл.lnk
497c1ad79c4ef5425eb8a7e4f49efc8b
drops stealer that uses Mega for exfil
#apt
NATO Sanctions Package Against Russia - Belgium (February 2026)(.PDF).html
94b0039707efcd1821d4b34c13f65a75
#cn #apt
IMG_20260301_0001.zip
0f15b0ba2f7b915085576f8abeaa277a
#apt "SIEHS Document.doc" 90c59e9620a8da4e56a7f61fd188d908
-> sbis.psca[.]gop[.]pk/css/PDF-READER/PDF%20Viewer.application
large #trawling phishing campaign targeting ukraine
domains ukremail[.]com, ua-gov[.]info
b6480aa6c364715a21ba28c4d26a5b6e
interesting susp #apt lure
تسريب صوتي لرئيس أمن الخارجي الجزائري - ليبيا.gz
"Audio leak of the head of Algerian foreign security - Libya.gz"
asyncrat to freedoom.ydns[.]eu
f4fcb39c8bd07133484001b7e60f497d
#cn #apt www.devlyrics[.]com/download/a937aq10 -> BRICS report. zip 7a183bd25d190662c3008c794f6cb604
#susp #apt NRTC_Defence_Academia_Collaboration_2026.zip 510b95f580be6b12e8fe004d8b860b35
#dailyphish #bec
nice #apt #phish targeting #pk readersspops@gmail.com -> drive.usercontent[.]google[.]com/download?id=1YkAJ-sUfcQ7Us9Ac7sTo1maweD2CDi0e
"Tip informatrion Regarding Potential Security Threat.rar" 2c3cc8cc3fb26130db7973f2e0c26306
#apt #in dnlogsecn@gmail.com -> mail-defence-lk-webmail-imp-view-php-actfgioner8kj-dffd[.]pages[.]dev
#dailyphish hosted on AWS original-office-doc203.s3.us-east-1.amazonaws[.]com/sharedocumentlive.html
#in #apt NASTP_ACAST_AND_AVIONICS_DIVISION_ROADMAP_Final_Ver.zip
08d9050f2569f643381765beed375ad4
zip -> rar (pass protected NASTP#786) -> chm -> exe 91693c2d5a4b7d090fe06cc7382dfc18
dont threaten me with a good time #dailyphish #bdubs
#susp #apt google_backup_codes.pdf.lnk 775869f5131da652099df6fd8b9968ae -> 29398f2-0239-281839-11129[.]ct[.]ws
ticket.doc
88e9acbc222b83d524dd4174367dec8b
same actor
USG-NMDC Consumption Report (Jan 21 2025 – Feb 20 2026).xls
057e58ff00be3032fd6e3f5d2cc80905
codefusiontech[.]org
#apt intercom.doc 85a2dba599390143c665e349f9f04161
c2 codefusiontech[.]org
#apt #in Updated Mobile and Email Details.xls 04cce783b42af18f9208fe5527fa04a8 -> shop.gladiolus[.]live
#apt targeting serbia gov
povecanje_plata_2026.html bff79c8c0780ac7bfb64a11fc0b30251
#dailychallenge #dailyphish. Real sender, or spoofed? why?
Great to collaborate with old friend Duy-Phuc Pham at Trellix on this recent APT28 cluster strikeready.com/blog/apt28s-... www.trellix.com/blogs/resear...
#susp #apt endpoint1-b0ecetbuabcdg9cp[.]z01[.]azurefd[.]net/download/PdfReaderUpdate.7z
National_Security_Advisory_India.pdf b47803dc97f9d0184c690639d26fb02a