
Both targets received malicious attachments purporting to be Amazon-themed job offers (one sent via LinkedIn messaging and the other sent via email) that, once opened, started the chain of attack.


Researchers observed the attackers targeting two victims last year, including a political journalist at a media outlet in Belgium and an employee at an aerospace company in the Netherlands. The North Korean state-sponsored group, Lazarus Group, leveraged a rootkit in two attacks that abused a known vulnerability in a Dell driver in order to disable various Windows monitoring features.
