news.mlab.sh
4 results
threat-intel

Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor

The Lazarus Group, a North Korean threat actor, is exploiting a newly patched zero-day vulnerability in Microsoft Windows' AFD.sys driver to gain SYSTEM access and deploy a backdoor called Troy. They are leveraging a sophisticated social engineering campaign – Operation Dream Job – to trick employees at defense and aer…

The Hacker News · Aug 12, 2026 High