North Korean Hackers Target Global Governments and Companies, UK, US, and South Korea Warn

https://icaro.icaromediagroup.com/system/images/photos/16302454/original/open-uri20240725-55-1lt14i9?1721944104
ICARO Media Group
Politics
25/07/2024 21h42

In a joint warning, the United Kingdom, United States, and South Korea have alerted the world to the efforts of a North Korean hacking group known as Andariel or Onyx Sleet. The group has been relentlessly targeting governments, private companies, and critical infrastructure worldwide, with the aim of acquiring classified information related to defense, aerospace, nuclear, and engineering sectors. These efforts are in line with Pyongyang's military and nuclear programs.

Andariel has been actively seeking highly sensitive information ranging from uranium processing to tanks, submarines, and torpedoes. The group's targets have spanned across several countries, including the UK, US, South Korea, Japan, and India, among others. Notably, US air force bases, NASA, and defense companies have also fallen victim to their cyber attacks.

The warning from the three nations underscores the global significance of this specific hacking group, as it combines espionage techniques with money-making endeavors. US officials reveal that Andariel funds its espionage activities through ransomware operations against healthcare entities in the country.

Paul Chichester, Director of Operations for the UK's National Cyber Security Centre (NCSC), highlights the importance of protecting sensitive information and intellectual property to prevent theft and misuse. The NCSC identifies Andariel as a part of North Korea's Reconnaissance General Bureau (RGB) 3rd Bureau.

To defend against these North Korean actors, the US, UK, and South Korea are sharing advice that includes measures to safeguard against the theft of information related to robot machinery, mechanical arms, and 3D printing components.

Michael Barnhart, Mandiant Principal Analyst at Google Cloud, acknowledges the seriousness of the threat posed by North Korean hacker groups. He highlights their targeting of hospitals for revenue generation, demonstrating their relentless focus on intelligence gathering, regardless of the potential consequences on human lives.

The warning serves as a reminder of the long-standing cyber threat posed by North Korean hackers. The country has been linked to numerous high-profile cyber incidents, including the 2014 attack on Sony Pictures in retaliation for a film that depicted the assassination of North Korean leader Kim Jong Un. North Korea is also notorious for the activities of the Lazarus Group, known for carrying out major thefts amounting to millions of dollars.

As phishing attacks increase, authorities urge organizations to take extra precautions. The warning coincides with North Korea's launch of balloons targeting the president's office compound, marking the first such incident. Additionally, a glitch causing global problems has been quantified for the first time.

The international community recognizes the urgent need to address the escalating cyber threats originating from North Korea and calls for heightened cybersecurity measures to protect sensitive information and infrastructure.

The views expressed in this article do not reflect the opinion of ICARO, or any of its affiliates.

Related