"North Korean Lazarus Group Exploits Windows Kernel Zero-Day for Rootkit Attack"

1 min read
Source: The Hacker News
"North Korean Lazarus Group Exploits Windows Kernel Zero-Day for Rootkit Attack"
Photo: The Hacker News
TL;DR Summary

The Lazarus Group exploited a recently patched Windows Kernel flaw, CVE-2024-21338, as a zero-day to gain kernel-level access and disable security software on compromised hosts. This allowed them to run the FudModule rootkit, which can disable security solutions and manipulate Windows components. The attack showcases the group's technical sophistication and cross-platform focus, as they also target Apple macOS systems. This incident highlights the ongoing threat posed by the Lazarus Group as one of the most prolific and advanced persistent threat actors in the cybersecurity landscape.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

85%

56385 words

Want the full story? Read the original article

Read on The Hacker News