Iranian hackers targeted major South Korean electronics maker
…via WMI, screenshot capture, and the download of additional malware. Credential theft occurred via fake Windows prompts, registry hive theft (SAM/SECURITY/SYSTEM), and Kerberos ticket abuse tools. Persistence was established through…
