Scenario

You are a junior threat intelligence analyst at a Cybersecurity firm. You have been tasked with investigating a Cyber espionage campaign known as Operation Dream Job. The goal is to gather crucial information about this operation.

https://app.hackthebox.com/sherlocks/Dream Job-1


Screenshot 2025-08-09 035114.png

we are provided with 3 hashes

1- Who conducted Operation Dream Job?

Lazarus Group

Screenshot 2025-08-09 035419.png

Screenshot 2025-08-09 035423.png

just google or visit MITRE → CTI → Campaigns and search or scroll tell you find Operation Dream Job

2- When was this operation first observed?

September 2019

Screenshot 2025-08-09 035541.png

in the right side you will see a block which have operation id , first and last seen and associated campaigns which is the next question answer