Threat actor APT43 targets US, Europe, Japan, South Korea

APT43, a North Korean cyberespionage actor also known as Kimsuky or Thallium, has been detected running measures supporting North Korean interests, according to security research by Google and Mandiant. Archipelago, a subset of APT43, specifically targets government and military personnel as well as policymakers, academics, and researchers. The groups use spear phishing and social engineering methods, alongside malware tools, and have an interest in cryptocurrencies. Protection measures recommend include user education and security solutions to detect phishing.