Remove 04
Remove 2009 Remove Document Remove Ransomware Remove Security
article thumbnail

North Korea-linked Lazarus APT used Windows Update client and GitHub in recent attacks

Security Affairs

This threat actor has been active since at least 2009, possibly as early as 2007, and it was involved in both cyber espionage campaigns and sabotage activities aimed to destroy data and disrupt systems. The document’s metadata used in this campaign links them to several other documents used by Lazarus in the past.