Supply chain
β Supply Chain
South Korean Organizations Third-Party Breach (August 2018)
Primary Source βIncident Details
Operation Red Signature Targets South Korean Companies. We uncovered Operation Red Signature, an information theft-driven supply chain attack targeting organizations in South Korea. We discovered the attacks around the end of July, while the media reported the attack in South Korea on August 6. By: Jaromir Horejsi, Joseph C Chen, Kawabata Kohei, Kenney Lu Aug 21, 2018 Read time: ( words). Together with our colleagues at IssueMakersLab , we uncovered Operation Red Signature, an information theft-driven supply chain attack targeting organizations in South Korea. We discovered the attacks around the end of July, while the media reported the attack in South Korea on August 6. Third-party company: Remote support solution provider.
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- Remote support solution provider
- Supply Chain Attack
- β Confirmed third-party / vendor compromise
Timeline
- 2018-08-01 Breach occurred
- 2018-08-21 Publicly disclosed