Breaking
December 23, 2024

North Korean Lazarus hackers are targeting nuclear workers | usagoldmines.com


  • Kaspersky recently discovered new additions to the Lazarus DreamJob campaign
  • The criminalss targeted two people working in the same nuclear-related firm
  • In the attack, they used updated malware to try and gain access

The infamous Lazarus Group, a threat actor linked to the North Korean government, was recently observed targeting IT professionals within the same nuclear-related organization with new malware strains.

These attacks seem to be a continuation of a campaign first kicked off in 2020, called Operation DreamJob (AKA Deathnote), were the attackers would create fake jobs and offer these dreamy positions to people working in defense, aerospace, cryptocurrency, and other global sectors, around the world.

They would reach out via social media such as LinkedIn or X, and run multiple rounds of “interviews”. At any point during these interviews, the victims would be either dropped a piece of malware, or trojanized remote access tools.

CookieTime and CookiePlus

The end goal of this campaign is to either steal sensitive information, or cryptocurrency. Lazarus has, among other things, managed to steal roughly $600 million from a crypto company back in 2022.

As Kaspersky explained in its latest writeup, in this case, Lazarus targeted two individuals with malicious remote access tools. They then used the tools to drop a piece of malware called CookieTime, which acted as a backdoor, allowing the attackers to run different commands on the compromised endpoint.

This gave them the ability to move laterally across the network and download several additional malware strains, such as LPEClient, Charamel Loader, ServiceChanger, and an updated version of CookiePlus.

Kaspersky says CookiePlus is particularly interesting, since it is a new plugin-based malicious program, discovered during the most recent investigation. It was loaded by both ServiceChanger and Charamel Loader, with variants being executed differently, depending on the loader. Since CookiePlus acts as a downloader, its functionality is limited, and it transmits minimal information.

The attacks took place in January 2024, meaning Lazarus remains a major threat coming out of North Korea.

Via The Hacker News

You might also like

​ 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Philips 5000-series smart deadbolt review: To open, just scan the hand | usagoldmines.com
All the Samsung Galaxy S25 Rumors We Know so Far (Including a Potential Launch Date) David Nield | u...
iPhone Sizes Change Next Year: What to Know Tim Hardwick | usagoldmines.com
Macs With M5 Chips Expected to Launch in This Order Joe Rossignol | usagoldmines.com
Sophos flags concerning firewall security flaws, users told to patch now | usagoldmines.com
Need a last-minute gift card? 20 compelling options for tech and beyond | usagoldmines.com
Samsung’s gigantic 8TB portable SSD just dropped to its best price | usagoldmines.com
Upgrade your PC to Windows 11 Pro for a killer 52% off | usagoldmines.com
You Can Search With 'Natural Language' on Apple TV and Music Now Justin Pot | usagoldmines.com
The Sonos Era 300 Is at Its Lowest Price Ever Pradershika Sharma | usagoldmines.com
A new Microsoft 365 phishing service has emerged, so be on your guard | usagoldmines.com
AMD RDNA 4 GPU rumors flood forth, including possible name change to RX 9070 – because bigger is bet...
How might NASA change under Trump? Here’s what is being discussed Eric Berger | usagoldmines.com
Honda and Nissan to merge, Honda will take the lead Jonathan M. Gitlin | usagoldmines.com
This budget-friendly 4K Asus gaming monitor just got even cheaper | usagoldmines.com
Rising to the TOPS: How will NPUs and Windows AI grow in 2025? | usagoldmines.com
Why I Love My Travel Drawer (and What I Put In It) Beth Skwarecki | usagoldmines.com
iPhone 18 Pro Rumored to Be More Like DSLR Camera With This Upgrade Joe Rossignol | usagoldmines.com
Windows 11 suffers more bugs in latest update, with the Start menu hit hard by some frustrating issu...
Apple’s rumored Ring video doorbell rival could have a clever Face ID trick hamish.hector@futurenet....
Say hello to SetMe: A modern solution for offering remote tech support | usagoldmines.com
This tiny wireless speaker promises to sound like a big beefy stereo system using psychoacoustic tri...
US healthcare giant Ascension says ransomware attack affected nearly six million customers | usago...
AirPods Pro 3's big bet is health-tracking, but would that make you upgrade? | usagoldmines.com
Google CEO reveals major job cuts as part of "efficiency" move | usagoldmines.com
Google Chat is making it easy for you to ditch Microsoft Teams | usagoldmines.com
The Zero Trust era is coming: What that means for VPNs and your data | usagoldmines.com
The best PC games of 2024 (that don’t need a graphics card) | usagoldmines.com
New iPad Expected to Ship With iPadOS 18.3 in Spring 2025 Tim Hardwick | usagoldmines.com
X Announces Major Price Increases for Ad-Free Premium Plus Tier Tim Hardwick | usagoldmines.com
Film Technica: Our favorite movies of 2024 Jennifer Ouellette | usagoldmines.com
Open source software is now a multi-billion dollar industry | usagoldmines.com
Why the Govee Table Lamp 2 is top of my Christmas Wish List | usagoldmines.com
ChatGPT Plus subscribers just got a surprise free gift – unlimited OpenAI Sora access for the holida...
Garmin's latest beta brings 40 fixes and features to the Fenix 8, Enduro 3 stephen.warwick@futurenet...
Here's when the Samsung Galaxy S25 could go on sale – though expect to pay more | usagoldmines.com
Naoe will be 'the fastest Assassin' in series history says Assassin's Creed Shadows creative directo...
Industry analysts predict that there will "only one" successful Nintendo competitor in the next cons...
McDonalds delivery customers put at risk by possible data breach | usagoldmines.com
Many creatives are actually optimistic about the effects of AI | usagoldmines.com
Microsoft Teams Rooms introduces digital signage and AI features to revolutionize hybrid workspaces ...
Learn a new language on your terms — Lifetime access to Babbel is at your fingertips | usagoldmines...
Mac curious? This $350 MacBook Pro could be what converts you. | usagoldmines.com
The Apple Vision Pro’s Ultrawide Mac Virtual Display is something you have to see to believe jacob.k...
NYT Strands today — my hints, answers and spangram for Monday, December 23 (game #295) | usagoldmin...
NYT Connections today — my hints and answers for Monday, December 23 (game #561) | usagoldmines.com
Quordle today – my hints and answers for Monday, December 23 (game #1064) | usagoldmines.com
From lab to life - atomic-scale memristors pave the way for brain-like AI and next-gen computing pow...
New Androxgh0st botnet targets vulnerabilities in IoT devices and web applications via Mozi integrat...
TrueNAS device vulnerabilities exposed during hacking competition udinmwenefosa@gmail.com (Efosa Udi...
Could this be Dell's fastest laptop ever built? Dell Pro Max 18 Plus set to have 'RTX 5000 class' GP...
Google TV users are getting even more free channels in time for the holidays | usagoldmines.com
Apple 'Not' Working on New AirPort, But Apple TV and HomePod Provide Glimmer of Hope Joe Rossignol |...
iOS 19 Rumored to Be Compatible With These iPhones Joe Rossignol | usagoldmines.com
How to know if a USB cable is hiding malicious hacker hardware | usagoldmines.com
Apple Rumored to Launch Smart Home Doorbell With Face ID and More Joe Rossignol | usagoldmines.com
Apple Reportedly Working on AirPods Pro 3 With Heart Rate Feature Joe Rossignol | usagoldmines.com
Open source machine learning systems are highly vulnerable to security threats udinmwenefosa@gmail.c...
New leak says if your iPhone can run iOS 18, it should be able to run iOS 19 too | usagoldmines.com
Leaders pushing for AI investment are gaining competitive advantages udinmwenefosa@gmail.com (Efosa ...
Ars Technica’s top 20 video games of 2024 Kyle Orland | usagoldmines.com
Human versus autonomous car race ends before it begins Roberto Baldwin | usagoldmines.com
European data centers are having to delay carbon reduction goals and rethink sustainability plans ud...
Everything new on Netflix in January 2025 rowan.davies@futurenet.com (Rowan Davies) | usagoldmines.c...
Google Whisk is a new way to create AI visuals using image prompts –here's how to try it | usagoldm...
New Year, new Microsoft Office! Last chance to save 20% | usagoldmines.com
Stop squinting at your tiny screen and get this gorgeous portable monitor | usagoldmines.com
These are the companies using AI-driven dynamic pricing the most - and the top users probably won't ...
Synology patches critical vulnerabilities, urges users to update devices against zero-click attacks ...
Apple Now Offering Free Two-Hour Delivery on Last-Minute Gifts Joe Rossignol | usagoldmines.com
Apple Preparing iOS 18.2.1 Update for iPhone Joe Rossignol | usagoldmines.com
NYT Strands today — my hints, answers and spangram for Sunday, December 22 (game #294) | usagoldmin...
NYT Connections today — my hints and answers for Sunday, December 22 (game #560) | usagoldmines.com
Quordle today – my hints and answers for Sunday, December 22 (game #1063) | usagoldmines.com
OnePlus Watch 3: Upgrades Include Rotating Bezel and ECG Support Tim | usagoldmines.com
New 'HomePod' With 7-Inch Display, A18 Chip, and More Reportedly Launching Next Year Joe Rossignol |...
This new compact mini PC can support Intel 12th to 14th Gen processors and up to 96 GB DDR5 RAM udin...
CAMM2 memory modules promise significant advancements in memory technology with impressive read and ...
We may have to wait longer for the OnePlus Open 2 than we thought | usagoldmines.com
'Copper’s time has run out': Nvidia, AMD and TSMC have invested millions in a startup which may hold...
Popular Microsoft Office rival targets billion user milestone as it brings together office software,...
Fake parcel delivery texts are the fastest-growing phishing scam this holiday season – here’s how to...
Apple TV Plus: how to sign up, price, TV shows, movies, devices, and more tom.power@futurenet.com (T...
Today's the Last Day to Order From Apple for December 24th Delivery in the U.S. Juli Clover | usagol...
Best Apple Deals of the Week: Record Low Prices Return for AirTag, iPad, and MacBook Air Mitchel Bro...
More Galaxy S25 specs leak – and we might know just how thin the S25 Slim version is | usagoldmines...
Top Stories: iPhone 17 Designs, Foldable iPad or MacBook, and More MacRumors Staff | usagoldmines.co...
Green sea turtle gets relief from “bubble butt” syndrome thanks to 3D printing Jacek Krywko | usagol...
Samsung's rival has debuted new storage tech that offers a super-fast, high-capacity flash memory fo...
Exploring an undersea terrain sculpted by glaciers and volcanoes Ashley Balzer Vigil | usagoldmines....
Yellowjackets season 3: release date, cast, trailer and more news and rumors about the hit Paramount...
Real Excel pros master these fundamentals | usagoldmines.com
This $33 lifetime VPN won’t be available much longer | usagoldmines.com
ICYMI: the week's 7 biggest tech stories, from Meta smart glasses leaks to Superman's dog and ChatGP...
Chinese researchers repurpose Meta's Llama model for military intelligence applications udinmwenefos...
Microsoft Copilot Vision is the perfect holiday shopping buddy, and it’s finally here erichs211@gmai...
Four-Packs of AirTags Are $30 Off Right Now Daniel Oropeza | usagoldmines.com
Bluesky’s Latest Update Makes It Harder for Someone to Take Your Name Pranay Parab | usagoldmines.co...
12 Days of OpenAI ends with a new model for the new year erichs211@gmail.com (Eric Hal Schwartz) | u...
Only 15% of Steam users have played games released in 2024, but why? allisa.james@futurenet.com (All...

Leave a Reply