Security News > 2020 > December > North Korean state hackers breach COVID-19 research entities

North Korean state hackers breach COVID-19 research entities
2020-12-24 12:00

North Korean nation-state hackers tracked as the Lazarus Group have recently compromised organizations involved in COVID-19 research and vaccine development.

After slithering into their network, the North Korean state hackers deployed Bookcode and wAgent malware with backdoor capabilities.

In the attack that took place on October 27, the wAgent malware had "The same infection scheme as the malware that the Lazarus group used previously in attacks on cryptocurrency businesses."

Even though in the past the hackers deployed this malware in a supply chain attack and via spearphishing, in this case, the attack vector was not discovered.

Vaccine research organizations from Canada, UK, and the US have been the target of several attacks coordinated by the Russian state-sponsored APT29 hacking group throughout the year.


News URL

https://www.bleepingcomputer.com/news/security/north-korean-state-hackers-breach-covid-19-research-entities/