Kimsuky Espionage Campaign
released on 2021-08-26 @ 08:36:08 AM
A few days ago, InQuest found an exciting Javascript file masquerading as a PDF that, upon activation, will drop and display a PDF (to maintain the ruse) as well as drop an executable. The document is a lure for the Korean Foreign Ministry document and its newsletter. The same attack was reported earlier by Malwarebytes in June.