SmallTiger Malware (Kimsuky, Andariel Group) Being Used in Attacks Targeting Domestic Companies

  • AhnLab Security Intelligence Center (ASEC) is responding to recent cases of attacks using the SmallTiger malware targeting domestic companies in Korea.
  • The initial infiltration process is not confirmed, but SmallTiger was distributed within the targeted companies during the attack and lateral movement phases.
  • The attack targets include domestic defense companies, automotive parts manufacturers, and semiconductor manufacturers.
  • The attack was first identified in November 2023, and the detected malware in the targeted systems is believed to be typical of the Kimsuky group, but it differs in the exploitation of software update programs within the company’s internal propagation process.
  • Furthermore…

https://asec.ahnlab.com/ko/65918/