Lazarus against Italian institution operating in the banking and financial sector

2019-11-21 evilrez

https://github.com/evilrez/CTI/tree/master/Intrusions

Attachments

Lazarus_against_Italian_institution_operating_in_the_banking_and_f_5BuzHKZ.pdf (278 KB)

Thumbnail for Lazarus against Italian institution operating in the banking and financial sector

Lazarus activity is reflected in reporting about threats to financial sector, software developers. The clean source body emphasizes remote access tooling, developer-platform abuse as the most relevant defensive themes. Infrastructure references such as sector.png appear in the recovered context and should be triaged with the surrounding IOC evidence. Analysts can use the repaired archive to prioritize detection around delivery, execution, credential access and infrastructure patterns described in the source.

Related Actors

Related Reports

« Back