DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware
Threat actors with ties to North Korea have been attributed to a sophisticated macOS malvertising campaign that involves redirecting users to fake web pages ...
Drive-by malware framework using fake browser update lures on compromised websites, delivering multiple payloads.
Also known as: socgholish, fakeupdates, fake updates
Threat actors with ties to North Korea have been attributed to a sophisticated macOS malvertising campaign that involves redirecting users to fake web pages ...
SocGholish malware has been removed from 15,000 sites associated with Evil Corp hackers