Sign in to baba News

The Desk, the news read to you every hour, is part of News Plus.

or use an email code

Keep the whole picture

News Plus opens the cross-newsroom layer — who covered a story, who didn’t, and how each one worded it.

  • Unlimited follows
  • Alerts for what you follow (in the app)
  • Story alerts (in the app)
  • Hide read stories
  • The daily brief by email
  • Headlines side by side
  • Who reported first
  • The whole archive
  • Your reading diet
  • Duki without the daily limit
  • The Desk: the news, spoken every hour
  • Catch Me Up, and what changed since you read it
  • The Live Terminal

Eligible new subscribers get 7 days free, then $34.99 each year. Renews automatically until cancelled. Cancel any time in your account. Subscription terms.

Your subscription also unlocks the app.

Sign in to baba News

One account across the web, iPhone and Android — your subscription follows it.

or use an email code

Welcome — one more step

News Plus opens the cross-newsroom layer — who covered a story, who didn’t, and how each one worded it.

  • Unlimited follows
  • Alerts for what you follow (in the app)
  • Story alerts (in the app)
  • Hide read stories
  • The daily brief by email
  • Headlines side by side
  • Who reported first
  • The whole archive
  • Your reading diet
  • Duki without the daily limit
  • The Desk: the news, spoken every hour
  • Catch Me Up, and what changed since you read it
  • The Live Terminal

Eligible new subscribers get 7 days free, then $34.99 each year. Renews automatically until cancelled. Cancel any time in your account. Subscription terms.

Your subscription also unlocks the app.

Search stories

Type at least two characters. Results come from every newsroom baba reads.

↑↓ to move · ↵ to open · esc to close

Sign in to baba News

Sign in to keep asking. News Plus removes the daily limit.

or use an email code

Keep the whole picture

News Plus opens the cross-newsroom layer — who covered a story, who didn’t, and how each one worded it.

  • Unlimited follows
  • Alerts for what you follow (in the app)
  • Story alerts (in the app)
  • Hide read stories
  • The daily brief by email
  • Headlines side by side
  • Who reported first
  • The whole archive
  • Your reading diet
  • Duki without the daily limit
  • The Desk: the news, spoken every hour
  • Catch Me Up, and what changed since you read it
  • The Live Terminal

Eligible new subscribers get 7 days free, then $34.99 each year. Renews automatically until cancelled. Cancel any time in your account. Subscription terms.

Your subscription also unlocks the app.

North Korean Hackers Use Fake LinkedIn Job Offers to Breach Security Systems

By דיגיטל
Translated & summarized from Mako by baba
The story · English

Cybersecurity researchers at Check Point have uncovered a new cyberattack campaign, dubbed Operation Dream Job, conducted by the Lazarus Group, a hacking collective linked to North Korea. The campaign targets defense, aerospace, and security organizations by sending fake job offers through LinkedIn and messaging apps. These offers appear legitimate, often including authentic company branding and realistic job descriptions, but contain malicious software designed to infiltrate victims' computers.

The attackers exploit a previously unknown Windows zero-day vulnerability (CVE-2026-68820) that elevates their access privileges once malware is executed. This vulnerability allows attackers to gain system-level control, even on fully updated Windows 11 machines. Check Point reported the flaw to Microsoft on July 28, 2026; Microsoft confirmed it shortly after and released a security patch on August 11, 2026.

The malware, named Troy, functions as a backdoor enabling remote control with capabilities such as file searching, uploading, downloading, archiving, command execution, and memory-resident code running. Lazarus also cleverly uses compromised legitimate infrastructure, including hacked websites, webmail servers, and CMS platforms, to relay commands and mask their activities. In some cases, they exploited previously breached organizations to send phishing messages, leveraging their reputation to increase trustworthiness.

Check Point emphasizes the sophistication of the campaign, noting that traditional phishing detection methods are insufficient because the attackers use trusted sites and genuine-looking files. They advise organizations to promptly apply security updates, verify software sources, monitor for unusual network activity, and adopt a zero-trust approach even with seemingly reliable partners and websites.

Lazarus Group is known for prolonged espionage and financially motivated attacks against governments and sensitive industries. This campaign highlights their continued use of fake recruitment tactics to compromise high-value targets.

Read the original at Mako

Keep up with

MakoCentre · Neve Ilan

Sign in to baba News

Sign in to follow newsrooms, topics and people.

or use an email code

You’ve used your five follows

News Plus follows as many newsrooms, topics and people as you like.

  • Unlimited follows
  • Alerts for what you follow (in the app)
  • Story alerts (in the app)
  • Hide read stories
  • The daily brief by email
  • Headlines side by side
  • Who reported first
  • The whole archive
  • Your reading diet
  • Duki without the daily limit
  • The Desk: the news, spoken every hour
  • Catch Me Up, and what changed since you read it
  • The Live Terminal
See News Plus

Sign in to baba News

Sign in to follow newsrooms, topics and people.

or use an email code

You’ve used your five follows

News Plus follows as many newsrooms, topics and people as you like.

  • Unlimited follows
  • Alerts for what you follow (in the app)
  • Story alerts (in the app)
  • Hide read stories
  • The daily brief by email
  • Headlines side by side
  • Who reported first
  • The whole archive
  • Your reading diet
  • Duki without the daily limit
  • The Desk: the news, spoken every hour
  • Catch Me Up, and what changed since you read it
  • The Live Terminal
See News Plus
Open the live terminal