URL has been copied successfully!
DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea

Threat actors likely associated with the Democratic People’s Republic of Korea (DPRK) have been observed using GitHub as command-and-control (C2) infrastructure in multi-stage attacks targeting organizations in South Korea.The attack chain, per Fortinet FortiGuard Labs, involves obfuscated Windows shortcut (LNK) files acting as the starting point to drop a decoy PDF

First seen on thehackernews.com

Jump to article: thehackernews.com/2026/04/dprk-linked-hackers-use-github-as-c2-in.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link