Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
Also known as: Subgroup: Bluenoroff, Diamond Sleet, Dark Seoul, NICKEL ACADEMY, HIDDEN COBRA, Unit 121, Appleworm, Stardust Chollima, G0032, ATK117, NewRomanic Cyber Army Team, Silent Chollima, G0082, Whois Hacking Team, Group 77, Zinc, DEV-1222, Storm-1789, Operation Troy, COPERNICIUM, Guardians of Peace, Operation DarkSeoul, COVELLITE, APT-C-26, Hastati Group, Operation GhostSecret, Nickel Academy, APT 38, Citrine Sleet, ATK3, Bureau 121, TA404, Bluenoroff, Lazarus group, ZINC, Onyx Sleet, Andariel, APT38, PLUTONIUM, Black Artemis, Operation AppleJeus, Hidden Cobra, NICKEL GLADSTONE, DEV-0139, Moonstone Sleet, BeagleBoyz, Sapphire Sleet, Labyrinth Chollima, CTG-2460, Stressed Pungsan, Lazarus, Genie Spider, OperationTroy, Guardian of Peace, GOP, WHOis Team, Subgroup: Andariel, APT45, Stonefly, Jumpy Pisces, Alluring Pisces, TA444, UNC1069, CageyChameleon, CryptoCore, MASAN, GRASS NEPTUNE, MIDNIGHT NEPTUNE
CryptoCore is a North Korean APT known for targeting cryptocurrency exchanges and financial institutions, employing spear-phishing techniques that lead to LONEJOGGER malware infections. The group has leveraged social engineering tactics, including deepfake technology and hijacked YouTube accounts, to execute sophisticated giveaway scams that deceive victims into sending cryptocurrencies. Their operations have involved the misuse of platforms like Gemini for reconnaissance and the development of fraudulent content. Additionally, CryptoCore has been linked to a variety of campaigns, including Dangerous Password and SnatchCrypto, focusing on financial gain through cryptocurrency theft.
| CVE ID | Action |
|---|---|
| CVE-2018-4878 | View Details |
| CVE-2022-21894 | View Details |
| CVE-2017-0199 | View Details |
| CVE-2024-55591 | View Details |
| CVE-2017-8625 | View Details |
| CVE-2023-42793 | View Details |