Anatomy of COBRA - The Lazarus Group's Recent Activities and TTPs
2021-11-26 • JPCERT •
https://github.com/JPCERTCC/Lazarus-research/blob/main/slides/HITCON2021_Anatomy-of-COBRA.pdf
Attachments
JPCERT/CC's Anatomy of COBRA presentation reviews Lazarus Group campaigns and recent TTPs, emphasizing that Lazarus activity spans many countries and targets. The slides discuss how Lazarus-related categorizations overlap across names such as Bluenoroff, Andariel, TEMP.Hermit, APT38, Appleworm, and Stonefly, because campaigns can share infrastructure, malware, and techniques. The presentation focuses on Operation Dream Job, Operation JTrack, defense-industry targeting, ThreatNeedle, Bookcode, DTrack, and related activity to help analysts counter undocumented Lazarus tradecraft.