Cybersecurity
Security Flaws Exploited in Recent Cyber Attacks on Windows Systems
Researchers reveal 'Plug and Pwn' attacks exploiting Windows vulnerabilities linked to Lazarus Group's activity.

Security researchers have uncovered new 'Plug and Pwn' attacks that exploit the Windows Plug and Play feature, enabling the installation of vulnerable vendor software, ultimately granting SYSTEM privileges. This discovery highlights significant security risks associated with specific Windows functions.
In a related development, the Lazarus Group, a North Korean threat actor, has been linked to the exploitation of a newly patched zero-day vulnerability in Microsoft Windows. This exploitation is reported to facilitate the deployment of an unprecedented backdoor targeting defense and aerospace companies in France, Germany, Brazil, and India.
These findings were detailed by multiple sources, including BleepingComputer and The Hacker News, with Check Point Research specifically attributing the zero-day exploits to the Lazarus Group under its ongoing cyber espionage initiative, identified as Operation Dream Job.