The Lazarus Group (Labyrinth Chollima) orchestrated a supply chain attack on CyberLink Corp., manipulating a legitimate application installer to impact over 100 devices globally. The attack involves a second-stage payload, labeled LambLoad, communicating with compromised infrastructure and reflecting Lazarus Group’s focus on espionage and trojanized software use.