News North Korean hackers exploit new Chrome vulnerability for possible crypto theftMicrosoft attributes zero-day attacks to Citrine Sleet threat group, which may have shared tools with Lazarus Group A North Korean cybercrime group known for stealing cryptocurrency exploited a previously unknown vulnerability in the Google Chrome browser to remotely execute malware on victims’ systems, according to Microsoft. The U.S. software giant said in a blog post on Friday that it observed the North Korean threat actor Citrine Sleet exploiting the zero-day vulnerability, classified as CVE-2024-7971, to target Google’s open-source Chromium project, which serves as the base for Chrome and several other browsers. Cybercriminals like Citrine Sleet employ such zero-day attacks to exploit previously unknown security flaws and compromise targets’ systems © Korea Risk Group. All rights reserved. |