Since January, other reports have detailed a macOS RAT (DaclsRAT) and linked it to a wider Lazarus cross-platform toolset ( MATA framework). Kaspersky noted that as of January 2020, the Lazarus group was “currently one of the most active and prolific APT actors”.
At the beginning of the year, Kaspersky reported new details of an ongoing campaign they called ‘AppleJeus’, attributed to North Korean-backed APT group Lazarus and first spotted in 2018.