ELUSIVE COMET logo

ELUSIVE COMET

0 incidentes 0 paises 0 sectores apt KP Ultimo: -
Ver en IntelTracker → APTTrail →
Elusive Comet is a financially motivated cybercrime group that emerged in early 2025. It is assessed with high confidence to be linked to North Korea, though direct attribution to specific state-sponsored groups like Lazarus remains unconfirmed. The group's primary motivation is cryptocurrency theft. Elusive Comet distinguishes itself by targeting cryptocurrency professionals and executives through elaborate social engineering campaigns, where they impersonate venture capital firms or media outlets. They establish credibility with fake professional websites, social media profiles, and podcast series to lure victims into Zoom calls, during which they exploit Zoom’s remote control feature to install malware for cryptocurrency theft, focusing on manipulating legitimate workflows rather than exploiting technical vulnerabilities.
Tecnicas MITRE
T1496 - Resource Hijacking, T1195 - Supply Chain Compromise, T1102 - Web Service, T1562 - Impair Defenses, T1056 - Input Capture

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Tipo
apt
Pais origen
KP
Motivacion
-
Impacto
6
Actualizado
Tue, 06 Ja

Sectores objetivo (SOCRadar)

CryptoCurrency & NFT