Lazarus Fits Its Zero-Day With a Post-Quantum Key Exchange
Check Point Research found the North Korea-linked Lazarus Group using a Kyber-based key-encapsulation step to protect delivery of a privilege-escalation payload inside a Windows zero-day chain aimed at aerospace and defense targets. The post-quantum scheme from which the ML-KEM standard was derived has now surfaced as an offensive tool.