🇰🇵
LilacSquid
APT Group
Also Known As
No alias recordedTarget Countries
No target country recorded
Sectors Targeted
No targeted sector recordedDetails
Origin
🇰🇵 KP
Last Updated
13 Apr 2026
MITRE ATT&CK 27
T1005 - Data from Local System
T1021 - Remote Services
T1027 - Obfuscated Files or Information
T1053 - Scheduled Task/Job
T1059 - Command and Scripting Interpreter
T1059.001
T1068 - Exploitation for Privilege Escalation
T1070 - Indicator Removal on Host
T1070.004
T1071.001
T1078 - Valid Accounts
T1082 - System Information Discovery
T1083 - File and Directory Discovery
T1087 - Account Discovery
T1090
T1102
T1127 - Trusted Developer Utilities Proxy Execution
T1132 - Data Encoding
T1190 - Exploit Public-Facing Application
T1211 - Exploitation for Defense Evasion
T1216 - Signed Script Proxy Execution
T1219 - Remote Access Software
T1499
T1518 - Software Discovery
T1543 - Create or Modify System Process
T1547 - Boot or Logon Autostart Execution
T1566