Important findings for security professionals: "Hunting Lazarus Part VI: The Factory That Ate Its Workers"
Originally published on Red Asgard: https://redasgard.com/blog/hunting-lazarus-part6-factory-that-ate-its-workers
#lazarus #huntinglazarus #helpme #dprk #contagiousinterview #northkorea #atribution #redasgard #cybersecurity #threatintel #threathunt

Hunting Lazarus Part VI: The Factory That Ate Its Workers
Five operator workstations appeared in the campaign's own victim database. The same exfiltration pipeline that harvested developer credentials, wallet material, and source-repository tokens had ingested the staff who ran it — the supervisor, a persona operator, a test workstation, a provisioning workstation, and an operator infection that persisted sixty-eight days.