North Korean hackers targeted nearly 1,000 South Korean foreign policy experts


South Korean authorities believe North Korean hackers, working for the government, have targeted at least 892 foreign policy experts in the country. The efforts focused on members of think tanks and academics, dating back to April. The attacks began with spear phishing emails, often claiming to be from figures in South Koreas political system. These usually included either links to fake sites or viruses as attachments. The ploy, while not particularly sophisticated, was enough to fool at least a handful of victims.

The result was that several prominent experts had their personal data stolen, email lists compromised (exposing more people to the hackers), and 13 companies (primarily online retailers) were victims of ransomware. Although police believe only 49 recipients actually handed credentials over to the fakes sites and only two companies paid the 2.5 million won ($1,980) ransom, it’s difficult to judge the full scale of the fallout.

It’s unclear what non-financial resources the North Korean hackers may have gained from this latest campaign. But it’s certain this will not be the last cyber attack on its souther neighbor. The county has previously targeted security researchers to discover unpatched vulnerabilities, and even used the tragedy on Halloween in Itaewon as a tool to target South Korean citizens. 

Cyber warfare has been a major focus of North Korea for years, even as it seeks to deter foreign militaries with more traditional methods, like building nuclear weapons. It has also been a major source of revenue for the country which is in perpetual financial crisis and largely cut off from the world’s markets. It’s estimated that North Korean hackers have stolen $1.72 billion worth of cryptocurrency since 2017. And it doesn’t appear that it’s letting the recent crypto crash scare it off, as the recent ransoms were also paid in BitCoin.

Though the hackers covered their tracks reasonably well, the targets, tactics and IP addresses have led police to believe this is the same group that hacked the Korea Hydro & Nuclear Power in 2014. They also believe that the hackers will not cease their activity just because their efforts have been discovered. Authorities have urged people, especially those who work in sensitive areas like technology and government, to step up their security measures and be extra vigilant against fishing and human engineering attacks.

All products recommended by Engadget are selected by our editorial team, independent of our parent company. Some of our stories include affiliate links. If you buy something through one of these links, we may earn an affiliate commission. All prices are correct at the time of publishing.



Source link: https://www.engadget.com/north-korean-hackers-targeted-nearly-1000-south-korean-foreign-policy-experts-213700088.html?src=rss

Sponsors

spot_img

Latest

Ethereum Price Could Avoid a Major Drop if it Closes Above $1,250

Ethereum failed to clear the $1,250 resistance against the US Dollar. ETH is moving lower and might decline heavily if it breaks the...

Brickbat: Dead Again

In 2018, Jaxen Dyson's father died. Despite having only a last name in common with his dad, the Social Security Administration declared Jaxen...

The Internet Archive’s PalmPilot Emulation project lets you relive tech history

Fifteen years after the release of the iPhone, it’s easy to overlook the role early innovators like Palm played in popularizing the smartphone....

Stefanos Tsitsipas shocked by the train tragedy in Greece

The story also greatly affected the state of mind of the number 3 tennis player in the world. Stefanos Tsitsipas was shocked...

The Legends Tour season is coming to an end

The Legends Tour season is coming to an end © Getty Images Sport - Phil Inglis / Stringer The Legends Tour season is coming...