Lazarus Deploys RemotePE MemoryOnly RAT Against Financial and Crypto Firms

Cybersecurity researchers have shed light on a crossplatform malware called RemotePE that has been put to use by the North Korealinked Lazarus Group in attacks targeting financial and cryptocurrency organizations RemotePE per NCC Group subsidiary FoxIT is part of a multistage attack chain that involves two loaders tracked as DPAPILoader and RemotePELoader DPAPILoader decrypts and