UNC1069
2 mentions across all digests
North Korea-linked threat actor identified by Google Threat Intelligence as responsible for the targeted social engineering supply chain attack on the Axios JavaScript library maintainer.
We May Be Living Through the Most Consequential Hundred Days in Cyber History
Simultaneous coordinated breaches of the FBI, Lockheed Martin (375TB), and AI vendor Mercor by four distinct state/criminal actors signal an unprecedented escalation in parallel cyber warfare targeting US infrastructure and AI supply chains.
The Axios supply chain attack used individually targeted social engineering
Axios maintainer compromised via multi-layered social engineering attack using fake Slack workspaces, cloned founder identity, and fraudulent Microsoft Teams meeting delivering RAT malware.