Silent Push confirmed that North Korean IT workers use Astrill VPN to conceal their IP addresses while applying for jobs internationally. This reflects ongoing efforts by North Korean hackers, especially the Lazarus Group, to evade detection. Analysis revealed multiple IP addresses linked to malicious activities, prompting security professionals to implement stricter monitoring when encountering traffic from these VPNs.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,