SHATTEREDGLASS

Aliases: Unidentified 081

First seen
2021-04-01 00:00:00
Malware type
ransomware
Profile updated
2026-07-07 13:14:07

Targeted industries: government-and-public-sector

Targeted regions: country_code:kr

Context

Kaspersky Labs observed Andariel to drop this ransomware in one case within a series of attacks carried out against targets in South Korea in April 2021.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Shatteredglass_Auto (yara-rule)

Reports & references

  • cloud.google.com — Apt45 North Korea Digital Military Machine (report)
  • Kaspersky — 102811 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Shatteredglass (report)
  • github.com — Unidentified081Server (report)

External references