Kimsuky
Threat Actor
Kimsuky is a North Korean state-backed hacker group (also known as Velvet Chollima, Black Banshee, THALLIUM, or Emerald Sleet), an advanced persistent threat that targets South Korean think tanks, industry, nuclear power operators, and the South Korean Ministry of Unification for espionage purposes.
Kimsuky and Andariel are some of the North Korean hacker groups whose activities focus on espionage and attacks on the cryptocurrency industry.
In recent years Kimsuky has expanded its operations to target states such as Russia, the United States, and European nations.
Incidents Associated with this Threat
- January 15, 2024: North Korean hackers attack South Korea’s construction sector
- May 14, 2021: South Korea’s Atomic Agency Suffers Hack Attack
Malware Used by this Threat Actor
No malware identified for this threat actor.
