Lazarus targets defense industry with ThreatNeedle

Read the original article: Lazarus targets defense industry with ThreatNeedle


In mid-2020, we realized that Lazarus was launching attacks on the defense industry using the ThreatNeedle cluster, an advanced malware cluster of Manuscrypt (a.k.a. NukeSped). While investigating this activity, we were able to observe the complete life cycle of an attack, uncovering more technical details and links to the group’s other campaigns.


Read the original article: Lazarus targets defense industry with ThreatNeedle