🇰🇵

LilacSquid

APT Group

Also Known As

No alias recorded

Target Countries

No target country recorded

Sectors Targeted

No targeted sector recorded

Details

Origin 🇰🇵 KP
Last Updated 13 Apr 2026

MITRE ATT&CK 27

T1005 - Data from Local System T1021 - Remote Services T1027 - Obfuscated Files or Information T1053 - Scheduled Task/Job T1059 - Command and Scripting Interpreter T1059.001 T1068 - Exploitation for Privilege Escalation T1070 - Indicator Removal on Host T1070.004 T1071.001 T1078 - Valid Accounts T1082 - System Information Discovery T1083 - File and Directory Discovery T1087 - Account Discovery T1090 T1102 T1127 - Trusted Developer Utilities Proxy Execution T1132 - Data Encoding T1190 - Exploit Public-Facing Application T1211 - Exploitation for Defense Evasion T1216 - Signed Script Proxy Execution T1219 - Remote Access Software T1499 T1518 - Software Discovery T1543 - Create or Modify System Process T1547 - Boot or Logon Autostart Execution T1566

Related Zero-Days

No zero-day CVE linked to this actor