Cyber Threat Report: 'I-Soon leak: KELA’s insights'

Report Author KELA Cyber Intelligence Center
Publication Date 2024-03-07
Original Reporting Source
Attributed to Nation China
Related Intrusion Sets POISON CARP , JACKPOT PANDA
Related Threat Actors i-SOON
Identified CVEs CVE-2021-44228
Victim Sectors Financial Services, National Government, Telecommunications, Education

This blog post outlines KELA's analysis of the 2024 I-SOON data leak. According to the article, I-Soon had relationships with Chinese governmental bodies and infiltrated networks in various countries, targeting sectors like government, education, banking, and telecommunications. The company offered tools for Twitter monitoring, custom RATs (Remote Access Trojans), iOS/Android exploitation, network penetration, email analysis, and automated pentesting.

Cyber Threat Graph Context

Explore how this report relates to the wider threat graph