Zero-Day Alert (CVE-2024-21338): Lazarus Group Exploits Windows Kernel Vulnerability

Avast has uncovered details surrounding a zero-day exploit actively used by the Lazarus Group, targeting a vulnerability in the Windows appid.sys driver (CVE-2024-21338). This kernel-level vulnerability allowed attackers to deploy an advanced, stealthy rootkit,...