A&T Alien Labs has observed new activity attributed to the Lazarus adversary group. This assessment is based on malicious documents believed to have been delivered by Lazarus during the last few months (spring 2021) The documents attempted to impersonate new defense contractors and engineering companies like Airbus, General Motors (GM), and Rheinmetall. These new documents contain macro malware, which has been developed and improved during the course of this campaign and from one target to another. The core techniques for the three malicious documents are the same, but the attackers attempted to reduce the potential detections.”]
Source: https://cybersecurity.att.com/blogs/labs-research/lazarus-campaign-ttps-and-evolution

