{"id":117410,"date":"2026-08-12T23:49:07","date_gmt":"2026-08-12T23:49:07","guid":{"rendered":"https:\/\/www.europesays.com\/korea\/117410\/"},"modified":"2026-08-12T23:49:07","modified_gmt":"2026-08-12T23:49:07","slug":"fake-job-offer-real-hackers-north-koreas-new-windows-attack","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/korea\/117410\/","title":{"rendered":"Fake job offer, real hackers: North Korea\u2019s new Windows attack"},"content":{"rendered":"<p>\t\t\t\t\t\t \t\t\t\t\t <img decoding=\"async\" alt=\"Illustration showing North Korean hackers attacking a computer\" class=\"imagecenter\" src=\"https:\/\/www.europesays.com\/korea\/wp-content\/uploads\/2026\/08\/north-korean-hackers-windows-11-pc-670px.jpg\" style=\"width: 670px; height: 377px;\"\/><\/p>\n<p>Suzanne Kantra\/Techlicious generated by ChatGPT<\/p>\n<p>Microsoft released its monthly security update yesterday, and one of the fixes closes a hole that <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2026-68820\" target=\"_blank\" rel=\"nofollow noopener\">hackers were already using to break into Windows<\/a> computers. Security firm Check Point says the attacks come from Lazarus, a hacking group <a href=\"https:\/\/research.checkpoint.com\/2026\/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack\/\" target=\"_blank\" rel=\"nofollow noopener\">tied to North Korea<\/a>. It is the latest version of a campaign of similar attacks dubbed Operation Dream Job, which security researchers have been tracking for years.<\/p>\n<p>According to Check Point, this new campaign &#8220;focused heavily on the defense sector, particularly organizations involved in military technologies such as surveillance sensors, drones, and robotics.&#8221; The scheme begins with a fake job offer: a recruiter reaches out about a role at a company the target would recognize and sends a PDF describing the position. Opening that PDF leverages a Windows system flaw to take full control of the machine.<\/p>\n<p>The flaw sits in the Windows Ancillary Function Driver for WinSock, a system-level driver that manages network connections. An attacker who already has a foothold in your PC can exploit the bug to grant themselves SYSTEM privileges, the highest level of Windows access. Microsoft hasn&#8217;t said whether the flaw has been used in attacks beyond the one Check Point identified.<\/p>\n<p>Windows normally downloads security patches automatically, but you can check yourself and install it manually, if needed. Open Settings, go to &#8220;Windows Update,&#8221; and select &#8220;Check for updates.&#8221; If an update is ready, install it and restart your PC.<\/p>\n<p>Read next: <a href=\"https:\/\/www.techlicious.com\/tip\/how-to-protect-your-privacy-on-public-wifi-networks-risks-fixes\/\" target=\"_blank\" rel=\"nofollow noopener\">What&#8217;s still risky about public Wi-Fi<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"Suzanne Kantra\/Techlicious generated by ChatGPT Microsoft released its monthly security update yesterday, and one of the fixes closes&hellip;\n","protected":false},"author":2,"featured_media":117411,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[20018,20019,31,154,34,313,1013,9480],"class_list":["post-117410","post","type-post","status-publish","format-standard","has-post-thumbnail","category-north-korea","tag-advice","tag-buyers-guides","tag-korea","tag-news","tag-north-korea","tag-reviews","tag-technology","tag-tips"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/posts\/117410","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/comments?post=117410"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/posts\/117410\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/media\/117411"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/media?parent=117410"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/categories?post=117410"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/tags?post=117410"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}