APT-C-60
Description
(ThreatBook) APT-C-60 is disclosed by domestic security vendors in 2021. It is reported that the earliest attack time can be traced back to 2018 and the attack targets human resources and trade-related institutions including China. Recent monitoring by ThreatBook Intelligence Research and Response Team found that the Group has been active since December 2021. In June this year, the Group launched targeted attacks on targets in S. Korea.
Names
Name | Name-Giver |
---|---|
APT-C-60 | Qihoo 360 |
APT-Q-12 | ? |
Country
Motivation
- Information theft and espionage
First Seen
2018
Observed Countries
Tools
Information
- https://threatbook.io/blog/Analysis-of-APT-C-60-Attack-on-South-Korea
- https://www.welivesecurity.com/en/eset-research/analysis-of-two-arbitrary-code-execution-vulnerabilities-affecting-wps-office/
- https://blogs.jpcert.or.jp/ja/2024/11/APT-C-60.html
Other Information
Uuid
d95fc4ff-3e71-4ab2-aa09-91e7efa56b13
Last Card Change
2024-12-26