“Lazarus Hackers Group” No Longer Refer to a Single APT Group But a Collection of Many Sub-Groups
ID: 2232c194-4759-5c88-8317-b7fbc0657fb0
STIX ID: report--2232c194-4759-5c88-8317-b7fbc0657fb0
Feed Name: GBHackers
Threat Score
**Executive summary:** The report explains that the term “Lazarus Group” now represents a network of specialized sub‑groups (e.g., APT38, Bluenoroff, Moonstone Sleet, Citrine Sleet) with overlapping TTPs and diverse objectives—ranging from cryptocurrency theft to ransomware—complicating attribution and necessitating subgroup‑level analysis for targeted alerts and defenses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
