Malware WinDealer used by LuoYu Attack Group

zeynepaydogan zeynepaydogan at protonmail.com
Mon Nov 1 00:09:03 PDT 2021


During [JSAC2021](https://jsac.jpcert.or.jp/archive/2021/en/index.html) on 28 January 2021, there was a presentation about an attack group LuoYu, which targets Korean and Japanese organisations since 2014 [1](https://blogs.jpcert.or.jp/en/2021/10/windealer.html#1)[2](https://blogs.jpcert.or.jp/en/2021/10/windealer.html#2). Recently, JPCERT/CC came across malware WinDealer used by this group. This article introduces some findings of our analysis

https://blogs.jpcert.or.jp/en/2021/10/windealer.html
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: text/html
Size: 1677 bytes
Desc: not available
URL: <https://lists.cpunks.org/pipermail/cypherpunks/attachments/20211101/65be328b/attachment.txt>


More information about the cypherpunks mailing list