Skip to Content

KakaoTalk phishing and breach

Updated on 2022-10-26: More KakaoTalk phishing

This is an analysis of a threat actor campaign that used the lure of a major fire at one of KakaoTalk’s data centers to distribute malware to users impacted by the downtime. Read more:

  • Amadey Bot Disguised as a Famous Korean Messenger Program Being Distributed
  • Shares of Korean internet giant Kakao slide after fire disrupts service

Overview: South Korea takes down scam site

The South Korean Ministry of Science and ICT said on Monday that it took down a malicious website that was using the nationwide confusion caused by a major fire at one of KakaoTalk’s data centers to distribute malware to users impacted by the downtime. Read more: Shares of Korean internet giant Kakao slide after fire disrupts service