logo

Lazarus_Group__2018__rpt-apt38-2018-web_v4.pdf

ID: bffda630-23c6-422b-a01b-de52701eae32

STIX ID: report--bffda630-23c6-422b-a01b-de52701eae32

Threat Score

95/100

Uploaded: 2026-08-15

Published Date: 2018-10-03

Last Modified Date: 2018-10-03

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
This FireEye report profiles APT38, a North Korean regime‑backed, financially motivated APT that targets banks and inter‑bank systems (notably SWIFT) to steal funds and conceal theft using custom malware and destructive wipers; it details the group's mission, global targeting, six‑stage heist methodology, timelines, shared infrastructure with other DPRK operations, and a technical annex enumerating malware families and detections.