Tag

Lazarus

All articles tagged with #lazarus

cybersecurity1 year ago

"Long-Term Exploitation: Windows Zero-Day Vulnerabilities by Lazarus Hackers"

Hackers backed by the North Korean government exploited a Windows zero-day vulnerability, CVE-2024-21338, for six months after Microsoft was informed of it, allowing them to install a stealthy rootkit on vulnerable computers. The vulnerability provided an easy and stealthy means for malware with administrative system rights to interact with the Windows kernel. Microsoft's delay in patching the vulnerability was attributed to its policy regarding admin-to-kernel vulnerabilities not representing a security boundary. The North Korean threat group Lazarus used the vulnerability to install a custom rootkit, taking advantage of the opportunity for stealth and advanced access to the Windows kernel.

cybersecurity1 year ago

"North Korean Hackers Exploit Windows Kernel Zero-Day for Months"

Microsoft patched a high-severity Windows Kernel privilege escalation vulnerability in February, six months after being informed that the flaw was being exploited as a zero-day by the North Korean Lazarus state hackers. The vulnerability impacts multiple versions of Windows and allows local attackers to gain SYSTEM privileges without user interaction. Lazarus exploited the flaw to gain kernel-level access, turn off security tools, and deploy a new remote access trojan (RAT) malware. Windows users are advised to install the February 2024 Patch Tuesday updates to block these attacks.

cybersecurity2 years ago

Lazarus Group Exploits Log4j Bug with New RAT Malware

The Lazarus hacking group, believed to be based in North Korea, is exploiting the Log4j vulnerability to deploy new malware, including two remote access trojans (RATs) named NineRAT and DLRAT, as well as a malware downloader called BottomLoader. The use of the D programming language is unusual and likely chosen to evade detection. The campaign, dubbed "Operation Blacksmith," began in March 2023 and targets manufacturing, agricultural, and physical security companies globally. Lazarus' tactics and tools continue to evolve, demonstrating the group's adaptability. The malware allows for command and control communication via Telegram and supports various commands for information gathering, file exfiltration, and system manipulation. Cisco Talos researchers suspect that Lazarus may share collected data with other advanced persistent threat (APT) groups.

entertainment2 years ago

"Shinichirō Watanabe's 'Lazarus': A New Adult Swim Anime from the Director of Cowboy Bebop"

Adult Swim has given the green light to "Lazarus," a new Toonami series from acclaimed anime director Shinichirō Watanabe, known for his work on "Cowboy Bebop" and other popular shows. The series, set in 2052, follows a neuroscientist who creates a cure-all drug with a deadly side effect. The show will feature contributions from director Chad Stahelski, saxophonist Kamasi Washington, and producers Floating Points and Bonobo. The project will be unveiled at the Adult Swim Festival in San Diego, with no release plans announced yet.