Lucene search

K
hiveproHiveForce LabsHIVEPRO:455D6B7AC4BBD57883465713E4ABFE75
HistoryDec 13, 2023 - 6:46 a.m.

Lazarus’s Operation Blacksmith Deploys Novel Dlang RATs

2023-12-1306:46:17
HiveForce Labs
www.hivepro.com
12
lazarus group
rats
log4j vulnerability

7 High

AI Score

Confidence

Low

0.976 High

EPSS

Percentile

100.0%

Summary: The Lazarus Group, a North Korea-linked threat actor, has been identified in a new global campaign called "Operation Blacksmith." In this campaign, the group opportunistically exploits the security vulnerability CVE-2021-44228 in Log4j to deploy previously undocumented RATs on compromised hosts, namely NineRAT, DLRAT, and BottomLoader, Log4j Threat Level - Red | Attack Report For a detailed threat advisory, download the pdf file here To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.