Lazarus Group Exploits Windows Zero-Day to Deploy Troy Backdoor via Trojanized PDF Viewer
Lazarus Group exploited CVE-2026-68820, a Windows AFD.sys privilege escalation flaw, to deploy the Troy backdoor via trojanized PDF viewers and DLL side-loading, targeting defense and aerospace sectors globally using compromised legitimate infrastructure for C2. Read more