Copperhedge Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
July 30, 2026
Last Seen
July 30, 2026

Copperhedge is a malware family tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

Copperhedge is a malware family tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed July 30, 2026; most recent activity July 30, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • State Hackers Made South Korea's Mandatory Banking Software Into Zero — Techtimes · July 30, 2026

Frequently asked questions

What is Copperhedge?

Copperhedge is a malware family tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

Is Copperhedge still active?

The most recent intelligence report mentioning Copperhedge on ThreatCluster is dated July 30, 2026.

What is Copperhedge associated with?

Across ThreatCluster reporting, Copperhedge most frequently co-occurs with Lazarus, Phishing, Zero-day Exploit, Operation Double Barrel, Operation SyncHole, among 12 tracked related entities.

What are the latest developments involving Copperhedge?

The most significant recent cluster is “Operation Double Barrel: State-Sponsored Exploitation of Korean Financial Software” (3 articles · Updated July 30, 2026). Copperhedge appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on Copperhedge?

Copperhedge appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown