Skip to main content
← All Articles

Tag

#APT37

4 articles

Advertisement

ScarCruft Deploys NarwhalRAT via Fake Microsoft Security Alerts
HIGH
Threat Intel

ScarCruft Deploys NarwhalRAT via Fake Microsoft Security Alerts

North Korean threat actor ScarCruft (APT37) is deploying NarwhalRAT via spear-phishing emails that mimic official Microsoft Account security notifications.

Runtime Rebel Intel
4 min read·Jun 16, 2026
ScarCruft Supply Chain Attack: BirdCall Malware Targets Windows & Android
HIGH
Threat Intel

ScarCruft Supply Chain Attack: BirdCall Malware Targets Windows & Android

ScarCruft compromised a video game platform to deploy BirdCall malware against users in China, marking a shift to cross-platform mobile espionage.

Runtime Rebel Intel
4 min read·May 5, 2026
TH
HIGH
Threat Intel

APT37 Deploys SHROUDEDVUE Malware to Target Air-Gapped Networks

North Korean threat actor APT37 utilizes new malware families like SHROUDEDVUE and WASHSYNC to infiltrate air-gapped systems via removable USB drives.

Runtime Rebel Intel
4 min read·Feb 27, 2026
ScarCruft Ruby Jumper Campaign Targets Air-Gapped Networks
HIGH
Threat Intel

ScarCruft Ruby Jumper Campaign Targets Air-Gapped Networks

North Korean threat actor ScarCruft (APT37) deploys Ruby Jumper campaign using Zoho WorkDrive for C2 and USB malware to target air-gapped environments.

Runtime Rebel Intel
4 min read·Feb 27, 2026