← Back to Feed
Attack Cases in Korea Involving the Installation of Radmin and UltraVNC
September 2, 2026 · AhnLab ASEC · Severity: HIGH
The AhnLab SEcurity intelligence Center (ASEC) recently identified attack cases that exploited Radmin and UltraVNC. Although the Initial Intrusion method remains unknown, the attackers installed Radmin—a remote control tool—and then installed UltraVNC. The threat actors exploited the remote control tools to gain control of the infected systems and installed Netch and CCProxy to use the […]
Key Takeaways
- Attack cases in Korea involve installation of Radmin and UltraVNC remote access tools for persistent unauthorized access to systems.
- Organizations should monitor for unauthorized installation of remote administration tools as indicators of compromise.
- Organizations should review the full article for complete details and implement relevant security measures.