Konni

Description

Konni is a remote administration tool, observed in the wild since early 2014. The Konni malware family is potentially linked to APT37, a North-Korean cyber espionage group active since 2012. The group primary victims are South-Korean political organizations, as well as Japan, Vietnam, Russia, Nepal, China, India, Romania, Kuwait, and other parts of the Middle East.

Names

Name
Konni

Category

Malware

Type

  • Backdoor
  • Info stealer

Information

Mitre Attack

Malpedia

Alienvault Otx

Other Information

Uuid

d238a221-2a1d-4558-9dbf-7a3a6bbb0d22

Last Card Change

2024-03-07