Tag: Lazarus hackers

OKX suspends DEX aggregator after Lazarus hackers try to launder funds
News

OKX suspends DEX aggregator after Lazarus hackers try to launder funds

In response to claims of misuse by the infamous North Korean Lazarus hackers, who recently carried off a $1.5 billion cryptocurrency robbery, OKX Web3 has chosen to halt its DEX aggregator services in order to undertake security enhancements. Decentralized finance (DeFi) services and spot and derivatives trading are only two of the many trading possibilities available on OKX, a well-known international cryptocurrency exchange. By December 2024, OKX was one of the leading exchanges in the globe, with about 8.0% of the global spot trading market share among centralized exchanges and a monthly trading volume of about $230 billion. A platform that pulls liquidity from several DEXs to give users the best trading rates and the least amount of slippage is known as a Decentralized Exchan...
Lazarus Hackers Exploited Windows Kernel Flaw as Zero-Day in Recent Attacks
News

Lazarus Hackers Exploited Windows Kernel Flaw as Zero-Day in Recent Attacks

Using a newly patched privilege escalation vulnerability in the Windows kernel, the infamous Lazarus Group attackers took use of a zero-day vulnerability to get kernel-level access and disable security software on compromised machines. The CVE-2024-21338 vulnerability (CVSS score: 7.8) can allow an attacker to take over a system and obtain SYSTEM privileges. Microsoft fixed it early this month as part of the Patch Tuesday releases. An attacker would need to sign in to the system to take advantage of this vulnerability, according to Microsoft. "An attacker might then launch a program that has been carefully designed to take advantage of the vulnerability read more Lazarus Hackers Exploited Windows Kernel Flaw as Zero-Day in Recent Attacks. Get up to date on the latest cybersecurit...
Lazarus hackers drop new RAT malware using 2-year-old Log4j bug
News

Lazarus hackers drop new RAT malware using 2-year-old Log4j bug

Lazarus, the infamous North Korean hacker group, is back at it again, using CVE-2021-44228, also known as "Log4Shell," to unleash three families of malware written in DLang that have never been seen before. Two remote access trojans (RATs) called NineRAT and DLRAT as well as a malware downloader called BottomLoader make up the new malware. Lazarus most likely selected the D programming language for new malware development in order to avoid detection because it is not frequently used in cybercrime operations. Code-named "Operation Blacksmith," the campaign began in March 2023 and targets physical security, manufacturing, and agricultural companies globally, according to Cisco read more Lazarus hackers drop new RAT malware using 2-year-old Log4j bug. Get up to date on the lates...