4/16 (Wed.) 14:00 - 14:30 4F 4B

Kimsuky's Ongoing Evolution: Adapting Attack Strategies in Modern Environments

In this presentation, TeamT5 will share insights into the latest attack evolution and strategic changes of the North Korean APT group Kimsuky. We will provide an in-depth introduction to Kimsuky's subgroups, CloudDragon and KimDragon, analyzing their shifting attack targets and the technical evolution of their specialized backdoor tools. According to our research, the group's targeting scope has gradually expanded from early focuses on government sectors, think tanks, defense, and financial institutions to heavy industries, technology sectors, and cryptocurrency industries. Following Microsoft's default disablement of macro functionality, the group has progressively adopted various alternative approaches in their operations, demonstrating high flexibility and adaptability. Finally, we will thoroughly examine the group's arsenal and its evolutionary trajectory.

Neo Chen
SPEAKER
TeamT5, Inc.
CTI Researcher, ThreatVision

TOPIC / TRACK
Threat Research Forum
Live Translation Session

LOCATION
Taipei Nangang Exhibition Center, Hall 2
4F 4B

LEVEL
Intermediate Intermediate sessions focus on cybersecurity architecture, tools, and practical applications, ideal for professionals with a basic understanding of cybersecurity.

SESSION TYPE
Breakout Session

LANGUAGE
Chinese
Real-Time Chinese & English Translation

SUBTOPIC
Threat Intelligence
Threat Research
APT