logo

Lazarus_Group__2020__Operation_AppleJeus_Sequel.pdf

ID: 6e95b779-a6da-4f83-8ae3-87544ba30b77

STIX ID: report--6e95b779-a6da-4f83-8ae3-87544ba30b77

Threat Score

85/100

Uploaded: 2026-08-15

Published Date: 2020-01-14

Last Modified Date: 2020-01-14

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Operation AppleJeus Sequel: Kaspersky GReAT details a continuing Lazarus-group campaign against cryptocurrency businesses, describing custom macOS and Windows loaders, multi-stage in-memory payload delivery, authentication-based download checks, tunneling/port-opening tools, manual implantation for persistence, and a comprehensive appendix of file hashes, domains, IPs and file paths observed across victims in multiple countries.