The North Korean hacking group Lazarus is exploiting the Log4Shell vulnerability to deploy three new malware families named NineRAT, DLRAT, and BottomLoader. These malware are written in the D programming language, which is rarely used in cybercrime, helping them evade detection. This new campaign, dubbed “Operation Blacksmith”, targets manufacturing, agricultural, and physical security companies worldwide, marking a significant shift in Lazarus’ tactics and tools.

Malware Defense 101 – Identifying and Removing Modern Threats
Cybersecurity threats in 2025 have become more sophisticated, with malware leveraging AI, evasion tactics, and polymorphic code. Data-stealing malware dominates, increasing by 180% in 2024.