Kimsuky

Threat Actor

Kimsuky is a North Korean state-backed hacker group (also known as Velvet Chollima, Black Banshee, THALLIUM, or Emerald Sleet), an advanced persistent threat that targets South Korean think tanks, industry, nuclear power operators, and the South Korean Ministry of Unification for espionage purposes.

Kimsuky and Andariel are some of the North Korean hacker groups whose activities focus on espionage and attacks on the cryptocurrency industry.

In recent years Kimsuky has expanded its operations to target states such as Russia, the United States, and European nations.

Malware Used by this Threat Actor

No malware identified for this threat actor.