Anatomy of a Lazarus cyber espionage campaign
released on 2020-12-15 @ 03:53:32 PM
"The incident response team of HvS-Consulting AG was involved in coordination, analysis, and remediation of multiple Advanced Persistent Threats (APT) against different European customers operating in the manufacturing and electrical industry. During incident response it turned out that industries and products of the affected companies are related to each other and the observed Tactics, Techniques & Procedures (TTP) and Indicators of Compromise (IOC) can be attributed with high confidence to the APT group Lazarus, which is considered to belong to the North Korean government."