Anatomy of COBRA - The Lazarus Group's Recent Activities and TTPs

2021-11-26 JPCERT

https://github.com/JPCERTCC/Lazarus-research/blob/main/slides/HITCON2021_Anatomy-of-COBRA.pdf

Attachments

HITCON2021_Anatomy-of-COBRA.pdf (4 MB)

Thumbnail for Anatomy of COBRA - The Lazarus Group's Recent Activities and TTPs

JPCERT/CC's Anatomy of COBRA presentation reviews Lazarus Group campaigns and recent TTPs, emphasizing that Lazarus activity spans many countries and targets. The slides discuss how Lazarus-related categorizations overlap across names such as Bluenoroff, Andariel, TEMP.Hermit, APT38, Appleworm, and Stonefly, because campaigns can share infrastructure, malware, and techniques. The presentation focuses on Operation Dream Job, Operation JTrack, defense-industry targeting, ThreatNeedle, Bookcode, DTrack, and related activity to help analysts counter undocumented Lazarus tradecraft.

Related Actors

Related Reports

« Back