Operation Red Signature
0 incidentes
0 paises
0 sectores
apt CN Ultimo: -
Operation Red Signature is a cyber espionage group that first emerged in early 2018 with a supply chain attack primarily targeting South Korean organizations. This group notably compromised a remote support solution provider's update server and leveraged a stolen code-signing certificate to distribute malware to specific victim IP ranges. Their primary motivation is information theft, aiming to exfiltrate sensitive data, user credentials, and database information. While the activity linked directly to Operation Red Signature was documented in 2018, the techniques align with broader state-sponsored cyber espionage efforts.