#WindowsZeroDay
August 12, 2026 at 5:52 PM
Lazarus Group's "Operation Dream Job" is back, exploiting a Windows zero-day (CVE-2026-68820) to target defense firms. They're using a post-quantum rootkit to blind EDRs and telemetry, showing a terrifying leap in attack…

https://www.tpp.blog/1fdd4oh

#cybersecurity #lazarusgroup #windowszeroday
August 12, 2026 at 4:15 PM
Lazarus Group is exploiting Windows zero-day CVE-2026-68820 in fake job lures to hit defense, aerospace, and aviation targets with SYSTEM-level malware and data theft. #LazarusGroup #India #WindowsZeroDay
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
North Korean hackers linked to the Lazarus Group are abusing the newly patched Windows zero-day CVE-2026-68820 in fake job application lures to compromise defense, aerospace, and aviation targets. The campaign uses Mistpen, ForestTiger, Troy, SecurityPDF, and RelayShell to gain SYSTEM privileges, persist, and steal data through compromised web infrastructure. #LazarusGroup #CVE-2026-68820...
www.hendryadrian.com
August 12, 2026 at 10:15 AM
Nightmare Eclipse has dropped LegacyHive, a Windows zero-day local privilege escalation flaw in User Profile Service that can load other users' hives, including admin hives. #NightmareEclipse #LegacyHive #WindowsZeroDay
Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day 
Nightmare Eclipse has released another Windows zero-day, LegacyHive, a local privilege escalation flaw in the Windows User Profile Service that can let an attacker load other users’ hives, including administrator hives. The researcher also shared a stripped proof-of-concept that works on systems with Microsoft’s July 2026 patches, while Microsoft has not...
www.hendryadrian.com
July 16, 2026 at 9:00 AM