← Back to feed
Threat Actors & CampaignsEmerging1 sourceSep 4, 2026 · 03:06via Malware.news

Kim Sooki again? This time, it was disguised as a request for seafood ingredients

Brief

A request to review the purchase of seafood ingredients arrived. When the file is opened, a normal hwp document appears, but while the user is reviewing the contents, a malicious script runs in the background and even registers a scheduled task. It then extracts system information to an external location, downloads and executes additional commands, […]

Kim Sooki again? This time, it was disguised as a request for seafood ingredients - ASEC

Read more on Malware.news