North Korean hackers targeting cybersecurity researchers


Essential to the attack were several research blogs, YouTube videos, LinkedIn profiles and chat groups used by the hackers to build credibility in the hopes of duping the researchers, according to a Monday blog post by Google’s Threat Analysis Group. — Bloomberg

Hackers from North Korea have embarked on a sweeping intelligence gathering campaign aimed at cybersecurity researchers who hunt for vulnerabilities in corporate networks, according to Google.

The North Korean government mounted a social engineering operation for several months in hopes of engaging with the researchers, according to Google. Essential to the attack were several research blogs, YouTube videos, LinkedIn profiles and chat groups used by the hackers to build credibility in the hopes of duping the researchers, according to a Monday blog post by Google’s Threat Analysis Group.

“After establishing initial communications, the actors would ask the targeted researcher if they wanted to collaborate on vulnerability research together,” reads the blog.

The request to collaborate came with a data file purportedly for research that was equipped with secret malware. If the researcher opened the file, the hidden malicious code would immediately begin communicating with the North Korean hackers, according to Google.

In other cases, the malware was installed in the researchers’ systems after they followed a Twitter link to a cybersecurity blog to review possible vulnerabilities, according to Alphabet Inc’s Google. – Bloomberg

Get 20% OFF The Star Digital Access

Monthly Plan

RM 13.90/month

RM 11.12/month

Billed as RM 11.12 for the 1st month, RM 13.90 thereafter.

Best Value

Annual Plan

RM 12.33/month

RM 9.87/month

Billed as RM 118.40 for the 1st year, RM 148 thereafter.

Follow us on our official WhatsApp channel for breaking news alerts and key updates!

Others Also Read