threat-intel
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
High
Summary
North Korean hackers, operating under the Lazarus Group, are exploiting a recently patched Windows zero-day vulnerability (CVE-2026-68820) to conduct targeted attacks against defense, aerospace, and aviation organizations in several countries, including France, Germany, Brazil, and India. These attacks are part of an ongoing campaign mimicking legitimate job recruitment efforts and involve deploying malware like ForestTiger and RelayShell to gain system control and exfiltrate data.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data