February 08, 2022  —  Eric Swotinsky
Incident reports

Spear-phishing campaign leverages Windows Update client, imitates recruiters

The Lazarus APT cybercrime group is carrying out a spear-phishing campaign that dangles fake job opportunities at Lockheed Martin.

Since 2009, Lazarus has operated as a cyber-espionage/cyber-sabotage group that has likely targeted upwards of 1,000 high-value targets. The group is now sending documents with malicious macros that leverage the Windows Update client to run a malicious DLL, in an effort to bypass security detection.

Acronis Cyber Protect's advanced anti-malware engines recognize both known and never-before-seen cyberthreats based on the malicious behaviors that they exhibit, keeping data and systems safe from harm.