#lazarus — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #lazarus, aggregated by home.social.
-
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
North Korea-affiliated Lazarus group has resurfaced with Operation Dream Job, leveraging a previously unknown Windows vulnerability (CVE-2026-68820) to target defense, aerospace, and aviation organizations. The campaign uses fake job offers from recruiters via platforms like LinkedIn to deliver malicious payloads through two infection chains: DLL sideloading with MISTPEN downloader and a trojanized PDF viewer called SecurityPDF that deploys the Troy backdoor. The zero-day exploit enables privilege escalation to deploy a rootkit that evades EDR detection. Attackers utilize compromised legitimate websites and Roundcube webmail servers running RelayShell as command and control infrastructure, masking malicious traffic as normal activity. Victims are concentrated in Europe, Asia, and South America, with particular focus on France, Germany, Brazil, and India. Microsoft patched the vulnerability following disclosure.
Pulse ID: 6a7d8b5671a34dd89301bbbe
Pulse Link: https://otx.alienvault.com/pulse/6a7d8b5671a34dd89301bbbe
Pulse Author: AlienVault
Created: 2026-08-13 09:16:05Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BackDoor #Brazil #CyberSecurity #EDR #Europe #France #Germany #India #InfoSec #Korea #Lazarus #LinkedIn #Microsoft #NorthKorea #OTX #OpenThreatExchange #PDF #RAT #Rootkit #SideLoading #SouthAmerica #Trojan #Vulnerability #Webmail #Windows #ZeroDay #bot #AlienVault
-
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
North Korea-affiliated Lazarus group has resurfaced with Operation Dream Job, leveraging a previously unknown Windows vulnerability (CVE-2026-68820) to target defense, aerospace, and aviation organizations. The campaign uses fake job offers from recruiters via platforms like LinkedIn to deliver malicious payloads through two infection chains: DLL sideloading with MISTPEN downloader and a trojanized PDF viewer called SecurityPDF that deploys the Troy backdoor. The zero-day exploit enables privilege escalation to deploy a rootkit that evades EDR detection. Attackers utilize compromised legitimate websites and Roundcube webmail servers running RelayShell as command and control infrastructure, masking malicious traffic as normal activity. Victims are concentrated in Europe, Asia, and South America, with particular focus on France, Germany, Brazil, and India. Microsoft patched the vulnerability following disclosure.
Pulse ID: 6a7d8b5671a34dd89301bbbe
Pulse Link: https://otx.alienvault.com/pulse/6a7d8b5671a34dd89301bbbe
Pulse Author: AlienVault
Created: 2026-08-13 09:16:05Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BackDoor #Brazil #CyberSecurity #EDR #Europe #France #Germany #India #InfoSec #Korea #Lazarus #LinkedIn #Microsoft #NorthKorea #OTX #OpenThreatExchange #PDF #RAT #Rootkit #SideLoading #SouthAmerica #Trojan #Vulnerability #Webmail #Windows #ZeroDay #bot #AlienVault
-
Lazarus Post-Quantum Key Exchange Used to Deliver Windows Zero-Day - https://www.redpacketsecurity.com/lazarus-used-post-quantum-key-exchange-to-deliver-zero-day/
-
Lazarus Post-Quantum Key Exchange Used to Deliver Windows Zero-Day - https://www.redpacketsecurity.com/lazarus-used-post-quantum-key-exchange-to-deliver-zero-day/
-
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
#Lazarus #CVE_2026_68820
https://blog.checkpoint.com/research/state-sponsored-hackers-use-fake-job-offers-to-deliver-new-zero-day-exploit/ -
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
#Lazarus #CVE_2026_68820
https://blog.checkpoint.com/research/state-sponsored-hackers-use-fake-job-offers-to-deliver-new-zero-day-exploit/ -
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7cc1f91810a474e1284a56
Pulse Link: https://otx.alienvault.com/pulse/6a7cc1f91810a474e1284a56
Pulse Author: CyberHunter_NL
Created: 2026-08-12 18:56:57Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Windows #ZeroDay #bot #CyberHunter_NL
-
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7cc1f91810a474e1284a56
Pulse Link: https://otx.alienvault.com/pulse/6a7cc1f91810a474e1284a56
Pulse Author: CyberHunter_NL
Created: 2026-08-12 18:56:57Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Windows #ZeroDay #bot #CyberHunter_NL
-
Ein #Sicherheitsforscher hat wohl fast zwei Jahre lang unbemerkt die Systeme nordkoreanischer Hackergruppen wie #Lazarus mitgelesen.
Zentrale Erkenntnis: Die Cyberkriminellen attackieren oft nicht die Zielfirmen direkt, sondern kompromittieren IT-#Dienstleister, die in die Systeme mehrerer Kunden eingebunden sind.
Eine einzige erfolgreiche Übernahme öffnet damit oft #Root-Zugänge zu Servern und Cloud-Umgebungen zahlreicher Unternehmen auf einen Schlag:
https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/ #cybersecurity
-
Ein #Sicherheitsforscher hat wohl fast zwei Jahre lang unbemerkt die Systeme nordkoreanischer Hackergruppen wie #Lazarus mitgelesen.
Zentrale Erkenntnis: Die Cyberkriminellen attackieren oft nicht die Zielfirmen direkt, sondern kompromittieren IT-#Dienstleister, die in die Systeme mehrerer Kunden eingebunden sind.
Eine einzige erfolgreiche Übernahme öffnet damit oft #Root-Zugänge zu Servern und Cloud-Umgebungen zahlreicher Unternehmen auf einen Schlag:
https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/ #cybersecurity
-
📰 Lazarus Group Exploits Windows Zero-Day in Espionage Campaign
Microsoft patches actively exploited Windows zero-day (CVE-2026-68820) used by Lazarus Group. The bug allows SYSTEM-level access and was used in the 'Operation Dream Job' campaign to deploy rootkits against the defense sector. #CVE202668820 #Lazarus ...
-
North Korea-linked hackers are hiding clues in public #Ethereum transactions to help malicious software find attacker-controlled servers. 6 npm packages were caught using the technique, putting software developers and their systems at risk.
Listen/Read: https://hackread.com/dprk-hackers-ethereum-malicious-npm-packages/
-
North Korea-linked hackers are hiding clues in public #Ethereum transactions to help malicious software find attacker-controlled servers. 6 npm packages were caught using the technique, putting software developers and their systems at risk.
Listen/Read: https://hackread.com/dprk-hackers-ethereum-malicious-npm-packages/
-
Lazarus Hackers Actively Exploiting Windows AFD.sys Zero-Day to Deploy FudModule Rootkit
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7beecb020ccbfd7b706fad
Pulse Link: https://otx.alienvault.com/pulse/6a7beecb020ccbfd7b706fad
Pulse Author: CyberHunter_NL
Created: 2026-08-12 03:55:55Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Rootkit #Windows #ZeroDay #bot #CyberHunter_NL
-
Lazarus Hackers Actively Exploiting Windows AFD.sys Zero-Day to Deploy FudModule Rootkit
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7beecb020ccbfd7b706fad
Pulse Link: https://otx.alienvault.com/pulse/6a7beecb020ccbfd7b706fad
Pulse Author: CyberHunter_NL
Created: 2026-08-12 03:55:55Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Rootkit #Windows #ZeroDay #bot #CyberHunter_NL
-
📰 Lazarus Group Exploits Windows Zero-Day in Espionage Campaign
Microsoft patches actively exploited Windows zero-day (CVE-2026-68820) used by Lazarus Group. The bug allows SYSTEM-level access and was used in the 'Operation Dream Job' campaign to deploy rootkits against the defense sector. #CVE202668820 #Lazarus ...
-
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Indicators extracted from public reporting. Source: https://any.run/cybersecurity-blog/lazarus-group-it-workers-investigation-part-two/
Pulse ID: 6a7b1bec6c53b12a73b05e32
Pulse Link: https://otx.alienvault.com/pulse/6a7b1bec6c53b12a73b05e32
Pulse Author: CyberHunter_NL
Created: 2026-08-11 12:56:12Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#ANYRUN #CyberSecurity #HTTP #HTTPS #InfoSec #Korea #Lazarus #NorthKorea #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Indicators extracted from public reporting. Source: https://any.run/cybersecurity-blog/lazarus-group-it-workers-investigation-part-two/
Pulse ID: 6a7b1bec6c53b12a73b05e32
Pulse Link: https://otx.alienvault.com/pulse/6a7b1bec6c53b12a73b05e32
Pulse Author: CyberHunter_NL
Created: 2026-08-11 12:56:12Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#ANYRUN #CyberSecurity #HTTP #HTTPS #InfoSec #Korea #Lazarus #NorthKorea #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
Anybody has Xctdoor/Xctloader samples that can share? I was trying to get the samples from this AhnLabs blog https://asec.ahnlab.com/en/94847/ alas, they are not in VirusTotal or Malware Bazaar...
More than anything, I'm interested in samples employing these basic "obfuscation" techniques:
-
Anybody has Xctdoor/Xctloader samples that can share? I was trying to get the samples from this AhnLabs blog https://asec.ahnlab.com/en/94847/ alas, they are not in VirusTotal or Malware Bazaar...
More than anything, I'm interested in samples employing these basic "obfuscation" techniques:
-
Grok does not have desktop app. So I produced one with Grok :)
5.5MB binary!
28MB RAMThanks to #Lazarus and #FreePascal
-
Grok does not have desktop app. So I produced one with Grok :)
5.5MB binary!
28MB RAMThanks to #Lazarus and #FreePascal
-
-
-
-
-
I will finally have a vertex paint tool that just works ;)
-
I will finally have a vertex paint tool that just works ;)
-
-
-
Shinichiro Watanabe didn't just luck out. "I had to fight for everything," says the director of "Cowboy Bebop" and "Lazarus," looking back on his 30-year career in a book from Kadokawa. https://www.japantimes.co.jp/culture/2026/07/16/books/shinichiro-watanabe-book/?utm_medium=Social&utm_source=mastodon #culture #books #shinichirowatanabe #cowboybebop #samuraichamploo #lazarus #anime
-
Shinichiro Watanabe didn't just luck out. "I had to fight for everything," says the director of "Cowboy Bebop" and "Lazarus," looking back on his 30-year career in a book from Kadokawa. https://www.japantimes.co.jp/culture/2026/07/16/books/shinichiro-watanabe-book/?utm_medium=Social&utm_source=mastodon #culture #books #shinichirowatanabe #cowboybebop #samuraichamploo #lazarus #anime
-
Un anime cortito, y que me ha gustado. Se nota que es del creador de Cowboy Bebop, sobretodo con el prota, que me recordó al de Cowboy bebop cosa mala :NKO_hype: . Y lo de las palomas en todos lados... En fin, nostalgia.
La historia de Lazarus me ha gustado, bastante actual a día de hoy, y el giro al final, me gustó más todavía.
Los personajes, sin ser una locura, no están mal. Tb hay que tener en cuenta que es un anime bastante corto, 13 capitulos, asi que tp hay demasiado tiempo para indagar en ellos, siendo 5 protagonistas.
Lo dicho, no me ha parecido una maravilla, pero está bien, solo son 13 capitulos, tiene una historia entretenida y los protas no están mal. A veces no hace falta mucho más para hacer un buen anime.
-
Baugher reads Luke 16 with irritation: the rich man, condemned to hell, still tries ordering Lazarus about, as though nothing changed but his location. His heart stayed the same—still despising Moses. Today that charge gets redirected at those who suggest the rich should behave differently. The original target evades it entirely.
#lutheranchurchmissourisynod #lutheran #bible #lazarus #serviceeconomy #gospel #gettysburgseminary
-
📣🚨 Developers watch out as North Korean #Lazarus hackers are now targeting npm developers with brandjacking packages that mimic trusted tools and, in reality, drop malware to steal credentials.
Read: https://hackread.com/lazarus-group-npm-brandjacking-target-developers/
#CyberSecurity #NorthKorea #Brandjacking #npm #Developers #Malware
-
Цена одной опечатки: Как три неверные буквы сорвали киберограбление на миллиард долларов
Взлом системы SWIFT часто кажется чем-то из области голливудской фантастики, но в 2016 году группировка Lazarus доказала обратное. В этой статье мы шаг за шагом разберем архитектуру одной из самых дерзких APT-атак в истории: на Центробанк Бангладеш. Вы узнаете, как хакеры использовали целевой фишинг для первичного проникновения, как обходили встроенную криптографию ПО Alliance Access в оперативной памяти и зачем им понадобилось модифицировать прошивку обычного матричного принтера. Это история о том, как тотальная экономия на сетевой инфраструктуре чуть не стоила суверенному государству миллиарда долларов.
https://habr.com/ru/articles/1038600/
#информационная_безопасность #lazarus #киберпреступность #swift #apt #малварь #хакеры #бангладеш #социальная_инженерия #уязвимости
-
#Lazarus won Best Original Anime at the #CrunchyrollAnimeAwards.
That's twice in a row that a #Toonami Original #anime has won this particular award. Not bad for a block that people still don't know is still running to this day.
-
#Arkansas arm-wrestling champ brings competition to -
https://kensbookinfo.blogspot.com/p/us-capitals.html#LittleRock3 keys for #NewYork in Game 3 of #EastHern Conference -
https://kensbookinfo.blogspot.com/p/sports.html#25#Limerick man gets 50-year driving ban for motoring -
https://kensbookinfo.blogspot.com/p/ireland.html#AgrilandMad Cave invites you to join the #LAZARUS ORDER -
https://kensbookinfo.blogspot.com/p/etc-continents.html#Caribbean#Europe faces 'bad outcome', #Russia remains independent -
https://kensbookinfo.blogspot.com/p/etc.html#RussiaView all general interest news https://kensbookinfo.blogspot.com/2026/03/latest-general-interest-news.html