Federal agencies were ordered to patch a Windows vulnerability used by North Korean hackers to target people applying to jobs in the defense and aerospace industry. The bug was the only vulnerability in Microsoft’s Patch Tuesday release that the company confirmed is being used in real-world attacks. CISA gave federal agencies until August 25 to patch the bug. Once the files are opened, a backdoor is enabled that provides Lazarus hackers with long term remote access. Check Point researchers explained that the malware first gathers information about the infected device before deploying an exploit for CVE-2026-68820.