Summary: 2025/04/29 03:09

First reported date: 2019/05/03
Inquiry period : 2025/03/30 03:09 ~ 2025/04/29 03:09 (1 months), 9 search results

전 기간대비 89% 높은 트렌드를 보이고 있습니다.
전 기간대비 상승한 Top5 연관 키워드는
UNC China Malware ZeroDay Mandiant 입니다.
공격자 unc5221 unc1069 unc4899 TraderTraitor CryptoCore 도 새롭게 확인됩니다.
공격기술 Exploit RCE Campaign Social Engineering 도 새롭게 확인됩니다.
기관 및 기업 Google dprk North Korea Iran Chinese Cloudflare Israel 도 새롭게 확인됩니다.
기타 group Ivanti Threat securityaffairs Secure 등 신규 키워드도 확인됩니다.

 * 최근 뉴스기사 Top3:
    ㆍ 2025/04/23 Iran-Linked Hackers Target Israel with MURKYTOUR Malware via Fake Job Campaign
    ㆍ 2025/04/16 Chinese UNC5174 Group Expands Arsenal with New Open Source Tool and C2 Infrastructure
    ㆍ 2025/04/15 UNC5174’s evolution in China’s ongoing cyber warfare: From SNOWLIGHT to VShell

Trend graph by period


Related keyword cloud
Top 100

# Trend Count Comparison
1UNC 9 ▲ 8 (89%)
2China 7 ▲ 6 (86%)
3unc5221 5 ▲ new
4group 4 ▲ new
5Ivanti 3 ▲ new
6Malware 3 ▲ 2 (67%)
7ZeroDay 3 ▲ 2 (67%)
8Exploit 3 ▲ new
9RCE 2 ▲ new
10Mandiant 2 ▲ 1 (50%)
11Campaign 2 ▲ new
12Threat 2 ▲ new
13securityaffairs 2 ▲ new
14Secure 2 ▲ new
15hacking 2 ▲ 1 (50%)
16Connect 2 ▲ new
17unc1069 1 ▲ new
18Backdoor 1 - 0 (0%)
19target 1 ▲ new
20Operation 1 ▲ new
21MURKYTOUR 1 ▲ new
22actor 1 ▲ new
23ITWorker 1 ▲ new
24Trend 1 ▲ new
25Chinas 1 ▲ new
26unc3782 1 ▲ new
27Google 1 ▲ new
28unc4899 1 ▲ new
29unc5342 1 ▲ new
30dprk 1 ▲ new
31cti 1 ▲ new
32Data 1 ▲ new
33TraderTraitor 1 ▲ new
34North Korea 1 ▲ new
35UNC4736 1 ▲ new
36Social Engineering 1 ▲ new
37Iran 1 ▲ new
38Chinese 1 ▲ new
39aka 1 ▲ new
40Uteus 1 ▲ new
41Linux 1 ▲ new
42Cloudflare 1 ▲ new
43evolution 1 ▲ new
44MacOS 1 ▲ new
45c&c 1 ▲ new
46C2 1 ▲ new
47Expands 1 ▲ new
48Israel 1 ▲ new
49unc5174 1 ▲ new
50Sysdig 1 ▲ new
51Research 1 ▲ new
52Team 1 ▲ new
53Report 1 ▲ new
54Cyberespionage 1 ▲ new
55VPN 1 ▲ new
56warfare 1 ▲ new
57CryptoCore 1 ▲ new
Special keyword group
Top 5

Malware Type
Malware Type

This is the type of malware that is becoming an issue.


No data.

Attacker & Actors
Attacker & Actors

The status of the attacker or attack group being issued.


Keyword Average Label
unc5221
5 (55.6%)
unc1069
1 (11.1%)
unc4899
1 (11.1%)
TraderTraitor
1 (11.1%)
CryptoCore
1 (11.1%)
Attack technique
Technique

This is an attack technique that is becoming an issue.


Keyword Average Label
Exploit
3 (27.3%)
RCE
2 (18.2%)
Campaign
2 (18.2%)
hacking
2 (18.2%)
Backdoor
1 (9.1%)
Country & Company
Country & Company

This is a country or company that is an issue.


Keyword Average Label
China
7 (43.8%)
Mandiant
2 (12.5%)
Google
1 (6.3%)
dprk
1 (6.3%)
North Korea
1 (6.3%)
Threat info
Last 5

SNS

(Total : 6)
  Total keyword

China unc5221 ZeroDay Exploit hacking unc1069 UNC4736 unc4899 TraderTraitor dprk Mandiant North Korea VPN Report MacOS Malware RCE Cloudflare Linux CryptoCore

No Title Date
1lazarusholic @lazarusholic
"M-Trends 2025: Data, Insights, and Recommendations From the Frontlines" published by @Mandiant. #ITWorker, #Trend, #UNC1069, #UNC3782, #UNC4736, #UNC4899, #UNC5342, #DPRK, #CTI https://t.co/aM8ET9BT6z
2025.04.24
2Cyber_OSINT @Cyber_O51NT
Cyber-espionage group UNC5221, linked to China, has been exploiting vulnerabilities in Ivanti Connect Secure VPN appliances since 2023, showcasing their ability to weaponize zero-day exploits effectively. #CyberSecurity #UNC5221 https://t.co/wbslKlCshk
2025.04.18
3Cyber_OSINT @Cyber_O51NT
The Sysdig Threat Research Team reported that UNC5174 has evolved its cyber warfare tactics in China, transitioning from SNOWLIGHT to the sophisticated VShell tool for espionage and access brokering. #CyberSecurity #UNC5174 https://t.co/BUUv0rugdi
2025.04.16
4The Hacker News @TheHackersNews
⚠️ UNC5174 (aka Uteus), tied to China, is quietly breaching Linux & macOS systems using SNOWLIGHT malware + a fake Cloudflare app (VShell). ???? Targets: 20+ nations | Sectors: Gov, finance, defense ???? Tactics: Open-source tools, fileless payloads, fake authenticator apps ???? Risk: https://t
2025.04.15
5Pierluigi Paganini - Security Affairs @securityaffairs
#China-linked group #UNC5221 exploited #Ivanti Connect Secure zero-day since mid-March https://t.co/J9u8W4FYPc #securityaffairs #hacking -
2025.04.04

Additional information

No data
No data
No data
No data
Beta Service, If you select keyword, you can check detailed information.