"Lazarus Backdoor with IT Lure" published by dmpdump. #Lazarus, #PebbleDash, #DPRK, #CTI https://dmpdump.github.io/posts/Lazarus-Backdoor-ITLure/
Lazarus Backdoor with IT Lure

On January 27, 2025, @smica83 shared a sample on X indicating that it looked like Lazarus malware. I reviewed the sample and concluded that, indeed, it is a North Korean backdoor, likely the latest version of a backdoor publicly tracked as PEBBLEDASH.

dmpdump