Malwarebytes cybersecurity experts: It is been potentially linked to the North Korean’s APT37. The malware is distributed via spear phishing with 2 weaponized documents.
Palo Alto Networks: It has ties with Konni, used for over 3 years in multiple campaigns with a heavy interest in the Korean peninsula and surrounding areas.