Lazarus used Windows zero-day to hide Troy backdoor from EDR
The North Korean hacker group Lazarus has used a Windows zero-day against defense and aerospace organizations to install the previously unseen Troy backdoor and a kernel rootkit designed to undermine security monitoring. Microsoft patched the flaw on August 11; earlier coverage reported its active exploitation and inclusion in August’s Patch Tuesday release.
Source
👉@sysadminoff
https://4sysops.com/archives/lazarus-used-windows-zero-day-to-hide-troy-backdoor-from-edr/
Post #19319
60
