logo

North Korean Lazarus Group Deploys New macOS Malware Amid Infrastructure Breach

ID: 92634a4f-bad7-5e98-b8da-3358c15cce7e

STIX ID: report--92634a4f-bad7-5e98-b8da-3358c15cce7e

Feed Name: ThreatCluster

Threat Score
90/100

Date Published: 2026-04-22

Date Updated: 2026-04-23

...
...

Security researchers disclosed an active campaign by the North Korean Lazarus Group using a new macOS malware kit dubbed 'Mach-O Man' to target fintech and crypto personnel with fake meeting invites; the multi-stage infostealer exfiltrates data via a compromised Telegram bot, contains coding flaws that can cause CPU spikes, and investigators also breached the attackers' infrastructure revealing critical vulnerabilities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.