A Lazarus Group campaign, active from early 2020 until January 2023, leveraged a backdoored UltraVNC client against manufacturing and real-estate sectors in India and telecommunications companies in Pakistan and Bulgaria. The goal of the operation, whose scope extends beyond Bulgaria, India, and Pakistan, appears to be intelligence collection.
- Manufacturing and real-estate sectors in India and telecommunications companies in Bulgaria and Pakistan
Suspected state sponsor
- Korea (Democratic People's Republic of)
Type of incident
- Private sector
- Civil society