#LazarusGroup
Bitget, 387 milioni di dollari rubati: le tracce dell’ennesimo mega-furto crypto portano a Lazarus
il blog: insicurezzadigitale.com/bitget-387-m...

#cybersecurity #bitget #coreadelnord #criptovalute #cybercrime #cyberwar #infosec #lazarusgroup
💬 Il forum: internet-forum.it/t/stanza-sec...
September 29, 2026 at 9:01 AM
~Malpedia~
North Korea-linked hackers breached Bitget’s wallet backend and stole $387.5M in crypto.
-
IOCs: Lazarus Group
-
#Crypto #LazarusGroup #ThreatIntel
Bitget Loses $387M to North Korea
malpedia.caad.fkie.fraunhofer.de
September 29, 2026 at 4:03 AM
Bitget waved goodbye to $351.6 million after an intrusion into its hot wallets. At least their user protection fund gets some exercise today.

#CryptoHeist #LazarusGroup
September 25, 2026 at 7:04 AM
North Korean hackers, incl. Lazarus Group, launder $10s of millions in stolen crypto via Xinbi's "Black U" service. Funds are mixed w/ stablecoins from scams, then cashed out via OTC. Xinbi handles $24B+ in txns, aiding fraud & KYC evasion. 🚨 #crypto #cybersecurity #LazarusGroup
Cryptovka
CryptoMarket and Blockchain News
cryptovka.com
September 10, 2026 at 8:29 AM
crond, sshd, polkitd: la backdoor nordcoreana Ted infetta i demoni Linux nascosta dentro HAProxy
il blog: insicurezzadigitale.com/crond-sshd-p...

#cybersecurity #apt #apt37 #backdoor #coreadelnord #coreadelsud #infosec #lazarusgroup #linux #linuxbackdoor
September 8, 2026 at 11:53 AM
Two research teams have mapped how North Korea actually organises its hacking operations, and the familiar name Lazarus turns out to cover at least six separate clusters. The report also tracks a 2026 shake-up that renamed the country's two main intelligence agencies.

#LazarusGroup #APT #infosec
North Korea's hacking machine is bigger than Lazarus
Nation-State · IntelFusions threat intelligence
www.intelfusions.com
September 7, 2026 at 8:52 PM
New research from Sekoia & Kudelski Security reveals North Korea's Lazarus Group is not a monolith, but six distinct clusters (Jade Sleet, Moonstone Sleet, etc.) focused on espionage & financial theft. #ThreatIntel #LazarusGroup #DPRK

🌐 cyber[.]netsecops[.]io
North Korea
Research from Sekoia and Kudelski Security provides a new organizational structure for North Korea
cyber.netsecops.io
September 7, 2026 at 5:33 PM
North Korean hackers move $30 million in bitcoin on Hyperliquid as US weighs onshoring the…

https://newisty.com/blog/north-korean-hackers-move-30-million-in-bitcoin-on-hyperliquid-as-us-weighs-onshoring-the-platform?utm_source=social&utm_campaign=crypto_ne
ws

#northkorea #hyperliquid #lazarusgroup
September 1, 2026 at 4:20 AM
North Korean hackers move $30 million in bitcoin on Hyperliquid as US weighs onshoring the…

https://newisty.com/blog/north-korean-hackers-move-30-million-in-bitcoin-on-hyperliquid-as-us-weighs-onshoring-the-platform?utm_source=social&utm_campaign=crypto_ne
ws

#northkorea #hyperliquid #lazarusgroup
September 1, 2026 at 2:20 AM
Lazarus: kernel rootkit via fake aerospace job PDFs.
CISA: Oracle, Gitea, Zimbra mass risk.
Researchers: AI voice theft of Apple 2FA.

Full Inferlume Report: inferlume.com/reports/dail...

#CyberThreatIntelligence #LazarusGroup #ZeroDay #DFIR #InfoSec #SOC #ThreatDetection #CVE #Zimbra #Gitea
Fake Job Offers Hide Lazarus Rootkit as Servers Fall - Inferlume
{{rh9e7yNRO}}
inferlume.com
August 26, 2026 at 4:36 PM
Σοκ: η «επίθεση» μπορεί να περάσει από συνέντευξη για δουλειά.

Έρευνα που συνδέεται με τη Βόρεια Κορέα δείχνει πώς…

https://hacks.gr/proselavan-tychaia-voreiokoreates-chaker-kai-apokalyptoyn-pos-tryponoyn-sta-etairika-diktya/

#Cybersecurity #NorthKorea #LazarusGroup #InsiderThreat #IdentityFraud
August 14, 2026 at 7:18 AM
Lazarus Group exploits Windows zero-day to breach EU defense firms. Patch now!
#ZeroDay #LazarusGroup #PatchNow
August 13, 2026 at 5:41 PM
📢 Lazarus Group exploite un zero-day Windows (CVE-2026-68820) via de fausses offres d'emploi

Cet article documente une nouvelle vague de la campagne Operation Dream Job, attribuée au groupe nord-coréen Lazarus, ciblant les…

🟢 vérification factuelle haute
#LazarusGroup #ZeroDay #Cyberveille
Lazarus Group exploite un zero-day Windows (CVE-2026-68820) via de fausses offres d'emploi
Cet article documente une nouvelle vague de la campagne Operation Dream Job, attribuée au groupe nord-coréen Lazarus, ciblant les secteurs de la défense, de l'aérospatiale et de l'aviation en Europe, Asie et Amérique du Sud.
cyberveille.ch
August 13, 2026 at 4:00 PM
Microsoft's record Patch Tuesday fixed 419 vulnerabilities, including 3 zero-days. AI-assisted flaw discovery is driving bug counts higher, and CVE-2026-68820 was exploited in the wild, linked to Lazarus Group. #PatchTuesday #AI #LazarusGroup
Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery
Microsoft released fixes for 419 vulnerabilities in a record-setting Patch Tuesday, highlighting how AI-assisted flaw discovery is sharply accelerating the pace of software security issues. The update includes three zero-days, one actively exploited in the wild and linked to Lazarus Group, while the new clustered advisory format may make prioritizing patches...
www.hendryadrian.com
August 13, 2026 at 8:45 AM
Lazarus Group moved ~$16.64M in Bitcoin (262.2 BTC). Analysts suspect laundering. They still hold >$73M in crypto (BTC, USDT, ETH). #LazarusGroup #Bitcoin #Crypto
August 13, 2026 at 5:43 AM
Lazarus Group is exploiting a Windows zero-day to deploy the Troy backdoor against defense and aerospace targets via fake recruiter lures and trojanized software. #LazarusGroup #France #OperationDreamJob
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Lazarus Group is exploiting a recently patched Windows zero-day, CVE-2026-68820, to deliver a new backdoor called Troy against defense and aerospace targets in France, Germany, Brazil, and India through Operation Dream Job. The campaign uses fake recruiter lures, trojanized PDF software, and compromised legitimate sites and servers to spread MISTPEN, ForestTiger,...
www.hendryadrian.com
August 13, 2026 at 1:30 AM
August 12, 2026 at 10:17 PM
iT4iNT SERVER Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor VDS VPS Clown #LazarusGroup #PotatoSecurity #ZeroDayExploit #WindowsSecurity #Backdoor
August 12, 2026 at 8:33 PM
August 12, 2026 at 5:52 PM
Lazarus Group's "Operation Dream Job" is back, exploiting a Windows zero-day (CVE-2026-68820) to target defense firms. They're using a post-quantum rootkit to blind EDRs and telemetry, showing a terrifying leap in attack…

https://www.tpp.blog/1fdd4oh

#cybersecurity #lazarusgroup #windowszeroday
August 12, 2026 at 4:15 PM
August 12, 2026 at 3:07 PM
Lazarus Group is exploiting Windows zero-day CVE-2026-68820 in fake job lures to hit defense, aerospace, and aviation targets with SYSTEM-level malware and data theft. #LazarusGroup #India #WindowsZeroDay
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
North Korean hackers linked to the Lazarus Group are abusing the newly patched Windows zero-day CVE-2026-68820 in fake job application lures to compromise defense, aerospace, and aviation targets. The campaign uses Mistpen, ForestTiger, Troy, SecurityPDF, and RelayShell to gain SYSTEM privileges, persist, and steal data through compromised web infrastructure. #LazarusGroup #CVE-2026-68820...
www.hendryadrian.com
August 12, 2026 at 10:15 AM
US and South Korean agencies say Gunra ransomware is hitting government and critical infrastructure worldwide, using Conti-based code, Fortinet flaws, and a ransomware-as-a-service model. #Gunra #SouthKorea #Fortinet
US and South Korea warn of Gunra ransomware targeting govt agencies
U.S. and South Korean agencies warned that Gunra ransomware is targeting government and critical infrastructure organizations worldwide, using Conti-based code, Fortinet firewall exploits, and other access flaws to spread across Windows and Linux systems. The advisory also notes Gunra’s shift to a ransomware-as-a-service model, its recruitment of initial access brokers, and possible links to Lazarus Group. #Gunra #Conti #Fortinet #FortiOS #FortiProxy #LazarusGroup
www.hendryadrian.com
August 11, 2026 at 12:00 PM