lazarusholic

Everyday is lazarus.dayβ

Lazarus Group overview

2023-02-19, TribalSec
https://tribalsec.substack.com/p/cyberthreat-apt-lazarus-group-overview
#Trend

Contents

[CyberThreat] APT - Lazarus Group overview
The long story of Lazarus group
Intro
The Lazarus Group is a cybercrime group with ties to the North Korean government, consisting of an unknown number of individuals. Researchers have linked the group to various cyberattacks from 2010 to 2023, leading to their designation as an Advanced Persistent Threat (APT) due to their intended nature, threat level, and wide range of methods.
Different cybersecurity organizations refer to them by different names, such as Hidden Cobra and Zinc. The United States FBI considers them a North Korean state-sponsored hacking organization, and defectors have referred to them as the 414 Liaison Office. North Korea benefits from these cyber operations because they can create an asymmetric threat using a small group of operators, particularly against South Korea.
The Lazarus Group is composed of at least two subgroups, both known as Andariel and BlueNoroff, and has notable overlaps with the adversaries known as …