Top 10 Advanced Persistent Threat (APT) Groups That Dominated 2024
2025-02-14 • SOCRadar •
https://socradar.io/top-10-advanced-persistent-threat-apt-groups-2024/
SOCRadar's 2024 APT roundup profiles Lazarus Group as a North Korean state-sponsored actor tied to espionage, disruptive activity, and large-scale financial theft. The Lazarus section says the group intensified fake recruitment and developer-focused operations in 2024, including Operation DreamJob with CookiePlus against the nuclear sector and Operation 99 against Web3 and cryptocurrency developers on platforms such as LinkedIn. It also cites alleged Lazarus cryptocurrency thefts from WazirX and DMM Bitcoin and the DeTankZone campaign's use of CVE-2024-4947, a Google Chrome zero-day, to target cryptocurrency traders. The summary is useful as a high-level source for Lazarus's 2024 emphasis on social engineering, crypto theft, and exploit-driven financial operations.
Indicators of Compromise
| Type | Value | First Seen | Last Seen |
|---|---|---|---|
| DOMAIN | naverbox.pe.kr | 2025-02-14 | 2025-02-14 |