« 2019 »

183 reports

2019-10-12 • Objective-see

Objective-See analyzed a macOS backdoor that the post attributes to Lazarus and ties to the AppleJeus-style use of fake cryptocurrency trading software. The JMT Trading campaign used a legitimate-looking website and GitHub release downloads to distribute …

#AppleJeus
2019-10-02 • Norfolk

The follow-up Lazarus Injector analysis covers a signed malware tool uploaded to VirusTotal that appears related to earlier Lazarus tooling but behaves differently from the first injector. The file expects command-line parameters for operational mode and …

#Lazarus
2019-09-23 • Kaspersky

Kaspersky’s Dtrack analysis links the RAT family to Lazarus through code similarities with older malware and activity against India’s financial sector and research centers. The investigation began with ATMDtrack banking malware targeting Indian ATMs and e…

#DTrack #ATMDtrack
2019-09-18 • Sophos

SophosLabs found that WannaCry remained highly active in 2019 because thousands of modified binaries kept spreading on Windows systems that still lacked the 2017 patch for the wormable vulnerability. In a September–December 2018 sample, all 2,725 analyzed…

#WannaCry