ScarCruft Uses RokRAT Malware in Operation HanKook Phantom Targeting South Korean Academics
ScarCruft, a North Korea-linked threat actor, has launched a spear-phishing campaign named Operation HanKook Phantom. The attackers aim to steal sensitive information, establish persistence, and conduct long-term espionage using the RokRAT malware.