APT / THREAT GROUP
Lazarus
Limited data
Threat Analysis
Lazarus is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
Intelligence Reports Mentioning Lazarus
North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn
The Record· Jul 30, 2026
Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms
The Hacker News· May 25, 2026
North Korean Hackers Target Crypto Firms with ClickFix and AI-Made Zoom Lures
Infosecurity Magazine· Apr 28, 2026
Lazarus Doesn't Need AGI
Recorded Future Blog· Apr 27, 2026
North Korean Blamed for $290m KelpDAO Crypto Heist
Infosecurity Magazine· Apr 21, 2026
KelpDAO suffers $290 million heist tied to Lazarus hackers
BleepingComputer· Apr 20, 2026
Bitrefill blames North Korean Lazarus group for cyberattack
BleepingComputer· Mar 19, 2026
Crypto e-commerce platform Bitrefill accuses North Korea of stealing 18,500 purchase records
The Record· Mar 17, 2026
Quick Facts
TypeAPT / Threat Group
Research Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.