North Korean hackers exploit zero-day Windows vulnerability for sweeping attacks | NK News
NK News Logo
March 21, 2025Mar 21, 2025
News

North Korean hackers exploit zero-day Windows vulnerability for sweeping attacks

Researchers say DPRK cybercriminals used shortcut files to spread malware and steal data from targets around the world

North Korean cybercriminals have exploited a previously unknown vulnerability in Microsoft Windows to carry out sweeping espionage and data theft campaigns, according to an American-Japanese cybersecurity firm.

Trend Micro’s Trend Zero Day Initiative disclosed in a report on Tuesday that 11 state-sponsored Advanced Persistent Threat (APT) groups from North Korea, Iran and Russia have been leveraging the zero-day vulnerability across a variety of campaigns dating back to 2017.

Try unlimited access
Only $1 for four weeks

  • Unlimited access to all of NK News: reporting, investigations, analysis
  • Year-one discount if you continue past $1 trial period
  • The NK News Daily Update, an email newsletter to keep you in the loop
  • Searchable archive of all content, photo galleries, special columns
  • Contact NK News reporters with tips or requests for reporting
Get unlimited access to all NK News content, including original reporting, investigations, and analyses by our team of DPRK experts.
Subscribe now

All major cards accepted. No commitments – you can cancel any time.