{
  "metadata": {
    "generator": "Bulwark Black IOC Extractor",
    "source": "https://bulwarkblack.com/infostealer-infection-unmasks-dprk-operative-behind-polyfill-io-supply-chain-attack-and-us-crypto-exchange-infiltration/",
    "fang": "live",
    "exported_at": "2026-08-27T00:00:00Z",
    "total": 9,
    "categories": 2,
    "migration_policy": "typed-only-better-v2"
  },
  "iocs": {
    "IPv4": [
      "192.161.60.132"
    ],
    "Domains": [
      "funnull.host",
      "gate.us",
      "infostealers.com",
      "polyfill.com",
      "polyfill.io",
      "polyfillcache.com",
      "t2.funnull.host",
      "www.mediafire.com"
    ]
  }
}