North Korean hackers have exploited a recently patched Google Chrome zero-day (CVE-2024-7971) to deploy the FudModule rootkit after gaining SYSTEM privileges using a Windows Kernel exploit.
Citrine Sleet targets financial institutions, focusing on cryptocurrency organizations and associated individuals, and has been previously linked to Bureau 121 of North Korea's Reconnaissance General Bureau.
2 Comments
Ferris@infosec.pub · 3 pts · 1y
that's pretty intense. What do they plan to do with all of our dogecoin?
Kekzkrieger@feddit.org · 2 pts · 1y
Reason #37828 to use firefox instead