North Korea’s Lazarus Group Exploits New Microsoft Windows Vulnerability
A newly patched security flaw in Microsoft Windows was exploited as a zero-day by the Lazarus Group, a state-sponsored actor affiliated with North Korea. The vulnerability, tracked as CVE-2024-38193, is a privilege escalation bug in the Windows Ancillary Function Driver (AFD.sys) for WinSock. An attacker who successfully exploited this vulnerability could gain SYSTEM privileges, allowing … Read more