Lazarus Under The Hood
First seen: 2017-04 •
Last seen: 2026-05
#Simplii • 2018-05
Simplii is linked to NSHC’s SectorA01 custom proxy utility analysis, which describes continued attacks against financial-sector targets worldwide and cautions that attribution should be based on repeated TTP, protector, function, and algorithm comparisons rather than tooling alone. The provided evidence supports treating the case as a suspicious financial-sector data-breach context associated with SectorA01/FASTCash tagging, but it does not provide Simplii-specific intrusion mechanics, confirmed country-level attribution, or reusable indicators.
1
Related Reports
1
Affected Countries
97
Months Since
Lazarus Under The Hood