Lazarus Group exploited ManageEngine vulnerability to target critical infrastructure

siteadmin August 25, 2023

North Korean hackers Lazarus Group exploited a vulnerability in ManageEngine ServiceDesk to target key infrastructure and healthcare institutions in Europe and the US. They used this hole to deploy QuiteRAT, a malware trojan similar to but smaller than their previous MagicRAT malware. This evolution in tactics is notable as it makes detection harder and analysis more complex. The FBI has warned about Lazarus Group targeting cryptocurrency firms for money-laundering as well.