#lazarus — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #lazarus, aggregated by home.social.
-
🚨 🥷 #Lazarus zero-day targets defense firms
North Korean hackers exploited Windows to gain privileged access.
🔗 read more: www.bleepingcomputer...
#ransomNews #cybersecurity
Lazarus hackers exploited Wind... -
🚨 🥷 #Lazarus zero-day targets defense firms
North Korean hackers exploited Windows to gain privileged access.
🔗 read more: www.bleepingcomputer...
#ransomNews #cybersecurity
Lazarus hackers exploited Wind... -
Windows AFD.sys Zero-Day Exploited by Lazarus Hackers to Gain SYSTEM Access
Pulse ID: 6a7e137d417182865191ce16
Pulse Link: https://otx.alienvault.com/pulse/6a7e137d417182865191ce16
Pulse Author: cryptocti
Created: 2026-08-13 18:57:01Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #Lazarus #OTX #OpenThreatExchange #Windows #ZeroDay #bot #cryptocti
-
Windows AFD.sys Zero-Day Exploited by Lazarus Hackers to Gain SYSTEM Access
Pulse ID: 6a7e137d417182865191ce16
Pulse Link: https://otx.alienvault.com/pulse/6a7e137d417182865191ce16
Pulse Author: cryptocti
Created: 2026-08-13 18:57:01Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #Lazarus #OTX #OpenThreatExchange #Windows #ZeroDay #bot #cryptocti
-
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
North Korea-affiliated Lazarus group has resurfaced with Operation Dream Job, leveraging a previously unknown Windows vulnerability (CVE-2026-68820) to target defense, aerospace, and aviation organizations. The campaign uses fake job offers from recruiters via platforms like LinkedIn to deliver malicious payloads through two infection chains: DLL sideloading with MISTPEN downloader and a trojanized PDF viewer called SecurityPDF that deploys the Troy backdoor. The zero-day exploit enables privilege escalation to deploy a rootkit that evades EDR detection. Attackers utilize compromised legitimate websites and Roundcube webmail servers running RelayShell as command and control infrastructure, masking malicious traffic as normal activity. Victims are concentrated in Europe, Asia, and South America, with particular focus on France, Germany, Brazil, and India. Microsoft patched the vulnerability following disclosure.
Pulse ID: 6a7d8b5671a34dd89301bbbe
Pulse Link: https://otx.alienvault.com/pulse/6a7d8b5671a34dd89301bbbe
Pulse Author: AlienVault
Created: 2026-08-13 09:16:05Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BackDoor #Brazil #CyberSecurity #EDR #Europe #France #Germany #India #InfoSec #Korea #Lazarus #LinkedIn #Microsoft #NorthKorea #OTX #OpenThreatExchange #PDF #RAT #Rootkit #SideLoading #SouthAmerica #Trojan #Vulnerability #Webmail #Windows #ZeroDay #bot #AlienVault
-
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
North Korea-affiliated Lazarus group has resurfaced with Operation Dream Job, leveraging a previously unknown Windows vulnerability (CVE-2026-68820) to target defense, aerospace, and aviation organizations. The campaign uses fake job offers from recruiters via platforms like LinkedIn to deliver malicious payloads through two infection chains: DLL sideloading with MISTPEN downloader and a trojanized PDF viewer called SecurityPDF that deploys the Troy backdoor. The zero-day exploit enables privilege escalation to deploy a rootkit that evades EDR detection. Attackers utilize compromised legitimate websites and Roundcube webmail servers running RelayShell as command and control infrastructure, masking malicious traffic as normal activity. Victims are concentrated in Europe, Asia, and South America, with particular focus on France, Germany, Brazil, and India. Microsoft patched the vulnerability following disclosure.
Pulse ID: 6a7d8b5671a34dd89301bbbe
Pulse Link: https://otx.alienvault.com/pulse/6a7d8b5671a34dd89301bbbe
Pulse Author: AlienVault
Created: 2026-08-13 09:16:05Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BackDoor #Brazil #CyberSecurity #EDR #Europe #France #Germany #India #InfoSec #Korea #Lazarus #LinkedIn #Microsoft #NorthKorea #OTX #OpenThreatExchange #PDF #RAT #Rootkit #SideLoading #SouthAmerica #Trojan #Vulnerability #Webmail #Windows #ZeroDay #bot #AlienVault
-
Lazarus Post-Quantum Key Exchange Used to Deliver Windows Zero-Day - https://www.redpacketsecurity.com/lazarus-used-post-quantum-key-exchange-to-deliver-zero-day/
-
Lazarus Post-Quantum Key Exchange Used to Deliver Windows Zero-Day - https://www.redpacketsecurity.com/lazarus-used-post-quantum-key-exchange-to-deliver-zero-day/
-
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
#Lazarus #CVE_2026_68820
https://blog.checkpoint.com/research/state-sponsored-hackers-use-fake-job-offers-to-deliver-new-zero-day-exploit/ -
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
#Lazarus #CVE_2026_68820
https://blog.checkpoint.com/research/state-sponsored-hackers-use-fake-job-offers-to-deliver-new-zero-day-exploit/ -
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7cc1f91810a474e1284a56
Pulse Link: https://otx.alienvault.com/pulse/6a7cc1f91810a474e1284a56
Pulse Author: CyberHunter_NL
Created: 2026-08-12 18:56:57Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Windows #ZeroDay #bot #CyberHunter_NL
-
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7cc1f91810a474e1284a56
Pulse Link: https://otx.alienvault.com/pulse/6a7cc1f91810a474e1284a56
Pulse Author: CyberHunter_NL
Created: 2026-08-12 18:56:57Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Windows #ZeroDay #bot #CyberHunter_NL
-
Ein #Sicherheitsforscher hat wohl fast zwei Jahre lang unbemerkt die Systeme nordkoreanischer Hackergruppen wie #Lazarus mitgelesen.
Zentrale Erkenntnis: Die Cyberkriminellen attackieren oft nicht die Zielfirmen direkt, sondern kompromittieren IT-#Dienstleister, die in die Systeme mehrerer Kunden eingebunden sind.
Eine einzige erfolgreiche Übernahme öffnet damit oft #Root-Zugänge zu Servern und Cloud-Umgebungen zahlreicher Unternehmen auf einen Schlag:
https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/ #cybersecurity
-
Ein #Sicherheitsforscher hat wohl fast zwei Jahre lang unbemerkt die Systeme nordkoreanischer Hackergruppen wie #Lazarus mitgelesen.
Zentrale Erkenntnis: Die Cyberkriminellen attackieren oft nicht die Zielfirmen direkt, sondern kompromittieren IT-#Dienstleister, die in die Systeme mehrerer Kunden eingebunden sind.
Eine einzige erfolgreiche Übernahme öffnet damit oft #Root-Zugänge zu Servern und Cloud-Umgebungen zahlreicher Unternehmen auf einen Schlag:
https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/ #cybersecurity
-
📰 Lazarus Group Exploits Windows Zero-Day in Espionage Campaign
Microsoft patches actively exploited Windows zero-day (CVE-2026-68820) used by Lazarus Group. The bug allows SYSTEM-level access and was used in the 'Operation Dream Job' campaign to deploy rootkits against the defense sector. #CVE202668820 #Lazarus ...
-
North Korea-linked hackers are hiding clues in public #Ethereum transactions to help malicious software find attacker-controlled servers. 6 npm packages were caught using the technique, putting software developers and their systems at risk.
Listen/Read: https://hackread.com/dprk-hackers-ethereum-malicious-npm-packages/
-
North Korea-linked hackers are hiding clues in public #Ethereum transactions to help malicious software find attacker-controlled servers. 6 npm packages were caught using the technique, putting software developers and their systems at risk.
Listen/Read: https://hackread.com/dprk-hackers-ethereum-malicious-npm-packages/
-
Lazarus Hackers Actively Exploiting Windows AFD.sys Zero-Day to Deploy FudModule Rootkit
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7beecb020ccbfd7b706fad
Pulse Link: https://otx.alienvault.com/pulse/6a7beecb020ccbfd7b706fad
Pulse Author: CyberHunter_NL
Created: 2026-08-12 03:55:55Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Rootkit #Windows #ZeroDay #bot #CyberHunter_NL
-
Lazarus Hackers Actively Exploiting Windows AFD.sys Zero-Day to Deploy FudModule Rootkit
Indicators extracted from public reporting. Source: https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
Pulse ID: 6a7beecb020ccbfd7b706fad
Pulse Link: https://otx.alienvault.com/pulse/6a7beecb020ccbfd7b706fad
Pulse Author: CyberHunter_NL
Created: 2026-08-12 03:55:55Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #Lazarus #OTX #OpenThreatExchange #RCE #Rootkit #Windows #ZeroDay #bot #CyberHunter_NL
-
📰 Lazarus Group Exploits Windows Zero-Day in Espionage Campaign
Microsoft patches actively exploited Windows zero-day (CVE-2026-68820) used by Lazarus Group. The bug allows SYSTEM-level access and was used in the 'Operation Dream Job' campaign to deploy rootkits against the defense sector. #CVE202668820 #Lazarus ...
-
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Indicators extracted from public reporting. Source: https://any.run/cybersecurity-blog/lazarus-group-it-workers-investigation-part-two/
Pulse ID: 6a7b1bec6c53b12a73b05e32
Pulse Link: https://otx.alienvault.com/pulse/6a7b1bec6c53b12a73b05e32
Pulse Author: CyberHunter_NL
Created: 2026-08-11 12:56:12Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#ANYRUN #CyberSecurity #HTTP #HTTPS #InfoSec #Korea #Lazarus #NorthKorea #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Indicators extracted from public reporting. Source: https://any.run/cybersecurity-blog/lazarus-group-it-workers-investigation-part-two/
Pulse ID: 6a7b1bec6c53b12a73b05e32
Pulse Link: https://otx.alienvault.com/pulse/6a7b1bec6c53b12a73b05e32
Pulse Author: CyberHunter_NL
Created: 2026-08-11 12:56:12Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#ANYRUN #CyberSecurity #HTTP #HTTPS #InfoSec #Korea #Lazarus #NorthKorea #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
Anybody has Xctdoor/Xctloader samples that can share? I was trying to get the samples from this AhnLabs blog https://asec.ahnlab.com/en/94847/ alas, they are not in VirusTotal or Malware Bazaar...
More than anything, I'm interested in samples employing these basic "obfuscation" techniques:
-
Anybody has Xctdoor/Xctloader samples that can share? I was trying to get the samples from this AhnLabs blog https://asec.ahnlab.com/en/94847/ alas, they are not in VirusTotal or Malware Bazaar...
More than anything, I'm interested in samples employing these basic "obfuscation" techniques:
-
Grok does not have desktop app. So I produced one with Grok :)
5.5MB binary!
28MB RAMThanks to #Lazarus and #FreePascal
-
Grok does not have desktop app. So I produced one with Grok :)
5.5MB binary!
28MB RAMThanks to #Lazarus and #FreePascal
-
-
-
-
-
I will finally have a vertex paint tool that just works ;)
-
I will finally have a vertex paint tool that just works ;)
-
-
-
Shinichiro Watanabe didn't just luck out. "I had to fight for everything," says the director of "Cowboy Bebop" and "Lazarus," looking back on his 30-year career in a book from Kadokawa. https://www.japantimes.co.jp/culture/2026/07/16/books/shinichiro-watanabe-book/?utm_medium=Social&utm_source=mastodon #culture #books #shinichirowatanabe #cowboybebop #samuraichamploo #lazarus #anime
-
Shinichiro Watanabe didn't just luck out. "I had to fight for everything," says the director of "Cowboy Bebop" and "Lazarus," looking back on his 30-year career in a book from Kadokawa. https://www.japantimes.co.jp/culture/2026/07/16/books/shinichiro-watanabe-book/?utm_medium=Social&utm_source=mastodon #culture #books #shinichirowatanabe #cowboybebop #samuraichamploo #lazarus #anime
-
Un anime cortito, y que me ha gustado. Se nota que es del creador de Cowboy Bebop, sobretodo con el prota, que me recordó al de Cowboy bebop cosa mala :NKO_hype: . Y lo de las palomas en todos lados... En fin, nostalgia.
La historia de Lazarus me ha gustado, bastante actual a día de hoy, y el giro al final, me gustó más todavía.
Los personajes, sin ser una locura, no están mal. Tb hay que tener en cuenta que es un anime bastante corto, 13 capitulos, asi que tp hay demasiado tiempo para indagar en ellos, siendo 5 protagonistas.
Lo dicho, no me ha parecido una maravilla, pero está bien, solo son 13 capitulos, tiene una historia entretenida y los protas no están mal. A veces no hace falta mucho más para hacer un buen anime.
-
Baugher reads Luke 16 with irritation: the rich man, condemned to hell, still tries ordering Lazarus about, as though nothing changed but his location. His heart stayed the same—still despising Moses. Today that charge gets redirected at those who suggest the rich should behave differently. The original target evades it entirely.
#lutheranchurchmissourisynod #lutheran #bible #lazarus #serviceeconomy #gospel #gettysburgseminary
-
📣🚨 Developers watch out as North Korean #Lazarus hackers are now targeting npm developers with brandjacking packages that mimic trusted tools and, in reality, drop malware to steal credentials.
Read: https://hackread.com/lazarus-group-npm-brandjacking-target-developers/
#CyberSecurity #NorthKorea #Brandjacking #npm #Developers #Malware