securityonline.info 8/12/2026, 3:41:18 AM · external

Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks

Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks
CyberSIXT Evidence Panel
CISA KEV Listed in KEV
Patch Patch Available
Threat Actor

THE Lazarus group, linked to North Korea, launched a campaign called Operation Dream Job, targeting defense and aerospace companies in Europe and India. The campaign utilized spear-phishing and a Windows zero-day vulnerability (CVE-2026-68820) to deliver a trojanized PDF viewer, enabling further backdoor access. Microsoft patched the vulnerability on August 11, 2026.

The attackers exploited compromised servers to enhance phishing credibility, affecting multiple countries and employing at least 17 relay nodes for command and control. Urgent patching and email verification are recommended for protection.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline