North Korean APT Kimsuky Uses forceCopy Malware to Steal Browser-Stored Credentials
- Posted on February 6, 2025
- By The Hacker News
- 6 Views
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEioEEH4fX3aepl6EvwIEc_ChDrysFBr4V_3VLaN1Mz4vZhufsH03PTrO-zflG0M0H5fMsgf1h-cDdfDj-LSNhDOXpsaXOAe5xUWF0Pgh5nQ9VRWCOE1pqetu6rMHJqyse1JVHBQxfu21IW82-68vQYnoN6L5ZF8l6UnKlq1r0F79X7ouyWkBQySt6svzRNv/s728-rw-e365/cyberattack.png)
North Korean APT Kimsuky Uses forceCopy Malware to Steal Browser-Stored Credentials
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEioEEH4fX3aepl6EvwIEc_ChDrysFBr4V_3VLaN1Mz4vZhufsH03PTrO-zflG0M0H5fMsgf1h-cDdfDj-LSNhDOXpsaXOAe5xUWF0Pgh5nQ9VRWCOE1pqetu6rMHJqyse1JVHBQxfu21IW82-68vQYnoN6L5ZF8l6UnKlq1r0F79X7ouyWkBQySt6svzRNv/s728-rw-e365/cyberattack.png)
Kimsuky, a North Korean APT, uses LNK files and forceCopy malware to steal browser-stored credentials via phishing attacks, bypassing security defense