Today's Core Dump is brought to you by ThreatPerspective

The Hacker News

Kimsuky Spreads DocSwap Android Malware via QR Phishing Posing as Delivery App

The North Korean threat actor known as Kimsuky has been linked to a new campaign that distributes a new variant of Android malware called DocSwap via QR codes hosted on phishing sites mimicking Seoul-based logistics firm CJ Logistics (formerly CJ Korea Express). "The threat actor leveraged QR codes and notification pop-ups to lure victims into installing and executing the malware on their mobile

Published: 2025-12-18T13:13:00











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us