Lazarus Group Espionage Campaign Targets Aerospace and Defense

Cyber Security News by CyberSum.net
2 sources
Security researchers at ENKI have uncovered a sophisticated espionage campaign by the Lazarus Group targeting aerospace and defense organizations. The campaign, active since March 2025, uses phishing operations with malicious Word documents disguised as legitimate communications. The documents deploy a new variant of the Comebacker backdoor, which features advanced encryption and persistence mechanisms. The campaign's focus on specific organizations indicates a targeted espionage effort, with security teams advised to implement robust defenses against macro-based malware and spear phishing attempts.