N. Korean hacking group Kimsuky funds Pyongyang's espionage operations through cybercrimes

  发布时间:2024-09-22 01:37:27   作者:玩站小弟   我要评论
This image provided by Mandiant highlights the North Korean hacker group APT43, also known as Kimsuk 。
This <strong></strong>image provided by Mandiant highlights the North Korean hacker group APT43, also known as Kimsuky. Yonhap
This image provided by Mandiant highlights the North Korean hacker group APT43, also known as Kimsuky. Yonhap

A North Korean hacking group known as Kimsuky has hacked cryptocurrency to fund the country's espionage operations related to its nuclear program, Mandiant, Google's cybersecurity unit, said Tuesday.

In a recently published report, Mandiant said it has tracked the state-backed hacker group, classified as APT43, over the past five years and found out that Kimsuky has committed cybercrimes to financially support Pyongyang's nuclear weapons program.

"This is a group that has done some cybercrime particularly targeting cryptocurrency," said Luke McNamara, principal analyst at Mandiant, in an online press conference for South Korean media. "We believe their primary mission is cyber espionage, gathering secrets for the North Korean government, particularly around nuclear policy."

He said APT43 is part of the Reconnaissance General Bureau (RGB) in the North Korean government, along with other secret operations groups like APT38, Temp Hermit and Andariel, which are widely called Lazarus.

Those groups are believed to share malware and hacking codes to carry out their mission to bring in money for the North Korean government to fund the weapons program.

"APT43 carries out a variety of different financially motivated activity, primarily focused on stealing cryptocurrency within this category of activity," he said. "And one of the things they do to try to make that cryptocurrency that they have stolen more difficult to trace by law enforcement is by rolling that into or using that to pay for cloud mining or hash rental services."

They laundered the stolen cyber money through cloud mining services, allowing the country to disrupt the trail of those stolen funds.

He noted that North Korea has used the laundered money to collect information about nuclear weapons by sending spear-phishing emails targeting policymakers or researchers in South Korea and the United States to ask for in-depth analysis of North Korean issues.

"They didn't even send any malware. They simply asked someone who was working on policy matters to provide their strategic analysis of what was going on," he said. "And a lot of targets who had been sent emails like this have freely responded and given responses to APT43, which as we know is North Korea's RGB."

This image provided by Mandiant highlights the North Korean hacker group APT43, also known as Kimsuky. Yonhap
Luke McNamara, principal analyst at Mandiant, is shown in this photo provided by Mandiant. Yonhap

APT43 has also approached global pharmaceutical firms to get information on COVID-19 vaccines and treatment during the pandemic.

"Particularly since 2020, they targeted pharmaceuticals when the pandemic started and when there was a lot of work on vaccine treatments and other treatments for COVID-19," he said.

North Korea's cybercrimes will be more active and versatile from now on as they are playing a crucial role in giving financial support to the North Korean government, which is currently intensifying military provocations amid signs of a looming nuclear test.

"We expect APT43 will continue to be very prolific and very active, carrying out its mission of espionage," he said. "As North Korea continues its weapons program and as North Korea continues its missile tests, we expect APT43 to continue carrying out its operations because this is a key part of what this group is supporting." (Yonhap)


  • Tag:

相关文章

  • 'Black Myth: Wukong' PS5 review in progress: A potential masterpiece

    Black Myth: Wukongwantsto be the modern action RPG we’ve all been waiting for. It checks all t
    2024-09-22
  • 揭阳桂岭教育加速“奔跑”!“组团式”教育帮扶携手筑梦

    气温回暖,揭阳市揭东区桂岭镇玉白学校迎来一个明媚的冬日。体育课上,学生身穿色彩斑斓的棉袄,兴奋地在崭新的塑胶跑道上列队跑步,犹如五线谱上一个个跳动的音符,谱出一段充满活力的童谣;放学后,学生们没有急着
    2024-09-22
  • 在城市中心的露天阳台——柯木塱,悠然寻绿!

    在城市中心的露天阳台——柯木塱,悠然寻绿!_南方+_南方plus点击查看专题↑采菊东篱下,悠然见南山。陶渊明在归园田居后,才看到了秀丽的南山。而在繁华的广州,市民却能到广东省农业技术推广中心·天河智慧
    2024-09-22
  • “通过比较,我更信任雅安仁康医院”

    雅安仁康医院院长崔建强与张先生交流 近日,带着洗漱用品和换洗衣裳,张先生悄悄住进雅安仁康医院雅安结石病医院)以下简称:雅安仁康医院)。在电话联系妻子到仁康医院照顾他后,不忘提醒妻子:先别告诉大女儿。父
    2024-09-22
  • A Barbie flip phone is here from HMD

    This summer was Brat summer. We're approaching demure fall, which may transition into a season with
    2024-09-22
  • 瞄准油茶产业 助力乡村振兴

    孔庆博查看油茶长势他是四川农业大学优秀共青团干部,他是2021年优秀研究生毕业生,他是2021年度四川省天府杯“经典创业”称号获得者,他就是我市大学生创业者孔庆博。因为从小接触油茶,孔庆博也对油茶十分
    2024-09-22

最新评论