Lazarus_Group__2018__rpt-apt38-2018-web_v4.pdf
ID: bffda630-23c6-422b-a01b-de52701eae32
STIX ID: report--bffda630-23c6-422b-a01b-de52701eae32
Threat Score
95/100
Uploaded: 2026-08-15
Published Date: 2018-10-03
Last Modified Date: 2018-10-03
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
This FireEye report profiles APT38, a North Korean regime‑backed, financially motivated APT that targets banks and inter‑bank systems (notably SWIFT) to steal funds and conceal theft using custom malware and destructive wipers; it details the group's mission, global targeting, six‑stage heist methodology, timelines, shared infrastructure with other DPRK operations, and a technical annex enumerating malware families and detections.
