As cited
Copy frozen at (site build).
threat intel
North Korea’s Lazarus Operates Through Six Distinct Cyber Clusters
Security researchers from Sekoia and Kudelski Security identified six distinct operational clusters within North Korea's Lazarus umbrella group. These clusters pursue separate objectives including espionage, financial theft, and sanctions evasion, suggesting a compartmentalized structure within the broader threat actor organization.
Why it matters: Defenders and threat intelligence teams need to understand Lazarus's six-cluster structure to correctly attribute attacks, predict targeting patterns, and tailor detection rules for each cluster's specific tactics and objectives.
- Source published
- First seen by Cybersecurity Tracker