North Korea-linked Lazarus APT used Windows Update client and GitHub in recent attacks

This article has been indexed from Security Affairs

North Korea-linked Lazarus APT group uses Windows Update client to deliver malware on Windows systems. North Korea-linked Lazarus APT started using Windows Update to execute the malicious payload and GitHub as a command and control server in recent attacks, Malwarebytes researchers reported. The activity of the Lazarus APT group surged in 2014 and 2015, its members used […]

The post North Korea-linked Lazarus APT used Windows Update client and GitHub in recent attacks appeared first on Security Affairs.

Read the original article: North Korea-linked Lazarus APT used Windows Update client and GitHub in recent attacks