lazarusholic

Everyday is lazarus.dayβ

Exclusive Look Inside a Compromised North Korean APT Machine Linked to The Biggest Heist in History

2025-12-03, HudsonRock
https://www.hudsonrock.com/blog/5692
#Bybit #Lazarus

Contents

Exclusive Look Inside a Compromised North Korean APT Machine Linked to The Biggest Heist in History
December 3, 2025
Share
*Interactive simulator can be accessed via desktop – www.hudsonrock.com/northkorean

In the world of Threat Intelligence, we are usually looking at the aftermath of an attack: the encrypted servers, the stolen databases, or the fraudulent transactions. Rarely do we get a look through the eyes of the attacker.

But even state-sponsored hackers make mistakes. And sometimes, they get infected by the very same commodity malware they deploy against others.

Recently, Hudson Rock analyzed a unique infection from a LummaC2 infostealer log. The victim wasn’t a corporate employee or an unsuspecting consumer. The victim was a high-level North Korean threat actor operating a sophisticated malware development rig.

Thanks to cross-referencing our data with a recent Silent Push research, we can confirm this machine is directly linked to the broader North Korean threat ecosystem and infrastructure associated with the historic …