Supply chain β›“ Supply Chain

South Korean Organizations Third-Party Breach (August 2018)

πŸ“… 2018-08-01 🏒 Remote support solution provider
Primary Source β†—

Incident Details

Operation Red Signature Targets South Korean Companies. We uncovered Operation Red Signature, an information theft-driven supply chain attack targeting organizations in South Korea. We discovered the attacks around the end of July, while the media reported the attack in South Korea on August 6. By: Jaromir Horejsi, Joseph C Chen, Kawabata Kohei, Kenney Lu Aug 21, 2018 Read time: ( words). Together with our colleagues at IssueMakersLab , we uncovered Operation Red Signature, an information theft-driven supply chain attack targeting organizations in South Korea. We discovered the attacks around the end of July, while the media reported the attack in South Korea on August 6. Third-party company: Remote support solution provider.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Remote support solution provider
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2018-08-01 Breach occurred
  2. 2018-08-21 Publicly disclosed