North Korea's Lazarus Group used a previously unknown Windows flaw and quantum-resistant encryption in a campaign against defence, aerospace and aviation organisations, according to researchers.
Check Point Research said the group combined the zero-day vulnerability with fake recruitment approaches, a kernel-level rootkit and compromised third-party infrastructure to reach and infiltrate targets.