DPRK's Lazarus Group Launches Fake Font Malware Campaign Targeting Developers
Article Content
Browse articles
North Korea's Lazarus Group has intensified a supply chain attack known as the 'Fake Font' campaign, targeting software developers through fake job interviews and malicious GitHub repositories. This campaign, which began over 100 days ago, has seen the identification of 19 malicious repositories and utilizes Microsoft Visual Studio Code task files to deliver sophisticated malware.
Ask AI about this cluster
Answers cite the sources they use
Updated 197d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track Lazarus Group in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Mirage Kitten Targets Aviation and FinTech with New Cross-Platform Malware The Iranian cyberespionage group Mirage Kitten has launched a campaign targeting technology professionals in the aviation and FinTech sectors across the Middle East and Africa. This operation involves the use of two newly discovered malware families, NodeRabbit and PollCat, both of which are cross-platform remote…
Iranian State Actors Deploy CHOSEN BRICK Spyware Against Dissidents On September 15, 2026, the UK, US, and Netherlands issued a joint advisory regarding a spyware campaign attributed to Iranian state actors targeting dissidents, activists, and journalists. The malware, known as CHOSEN BRICK, is delivered through spear-phishing attacks on messaging platforms like WhatsApp and Telegram.…