In fresh attacks, North Korean APT Lazarus has exploited CVE-2026-68820, a new Windows zero-day, to take over victims’ systems.