


Perceptive Security
SOC/SIEM Consultancy

Researchers Capture Lazarus APT's Remote-Worker Scheme Live on Camera
Published:
2 december 2025 om 15:02:00
Alert date:
5 december 2025 om 08:03:23
Source:
thehackernews.com

Joint investigation by BCA LTD, NorthScan, and ANY.RUN uncovered North Korea's persistent infiltration scheme using remote IT workers tied to Lazarus Group's Famous Chollima division. For the first time, researchers captured this network of remote workers live on camera. The investigation reveals one of North Korea's most persistent methods for infiltrating organizations through fake remote employees. This represents a significant advancement in understanding Lazarus Group's operational tactics and their use of human assets for corporate infiltration.
Technical details
Mitigation steps:
Affected products:
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.