Unknown hackers attacked the renowned security company Kaspersky Lab with an advanced persistent threat (APT) also known as Duqu .
The company's analysts, examining the sophisticated nature of the attack, link it to the spread of the Stuxnet, which previously targeted organizations and businesses related to Iran.
Eugene Kaspersky as"extremely complex, advanced and state-sponsored, almost undetectable." He added that he sees a new generation of attacks in this attack.
Duqu breached the company's systems by exploiting a zero-day vulnerability in the Windows Kernel, which is called CVE-2015-236 and was only patched last Tuesday by Microsoft.
In the breach against Kaspersky Lab, it is reported that two other vulnerabilities were also used.
The initial attack, according to the researchers, began in a small branch of the company in Asia through the spear phishing.
As the large company reports, “The malicious modules were detected on “pass the hash” attack attempts on the local network, effectively providing multiple ways for attackers to move laterally.”

