From 392f93d73ee84c81af4ff29cabf4dc411b0bc71c Mon Sep 17 00:00:00 2001 From: S3N4T0R <121706460+S3N4T0R-0X0@users.noreply.github.com> Date: Fri, 14 Feb 2025 15:35:01 -0500 Subject: [PATCH] Update README.md --- North Koreans APT/Velvet Chollima/README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/North Koreans APT/Velvet Chollima/README.md b/North Koreans APT/Velvet Chollima/README.md index f18b869..b22aa2b 100644 --- a/North Koreans APT/Velvet Chollima/README.md +++ b/North Koreans APT/Velvet Chollima/README.md @@ -20,4 +20,4 @@ https://www.bleepingcomputer.com/news/security/fake-google-meet-conference-error 2. ClickFix technique: (Fake-Captcha) to make the target run PowerShell as an administrator and paste attacker-provided code. -3. reverse shell: Make simple reverse shell payload to creates a TCP connection to a command and control (C2) server and listens for commands to execute on the target machine. +3. reverse shell: Make simple reverse shell (payload.ps1) to creates a TCP connection to a command and control (C2) server and listens for commands to execute on the target machine.