January 06, 2025 11:30 am (IST)
Follow us:
facebook-white sharing button
twitter-white sharing button
instagram-white sharing button
youtube-white sharing button
Bharatiya Janata Party releases first list of candidates for Delhi Assembly polls, fields Parvesh Sahib Singh Verma against Kejriwal | Firecracker unit explosion in Tamil Nadu's Virudhunagar kills 6 | Body of independent journalist, who went missing on Jan 1, found in a septic tank in Chhattisgarh | Delhi: 14-year-old student stabbed to death outside school after brawl with classmate | Rohit Sharma confirms he is not retiring amid speculations after skipping Sydney Test | India objects to China's 'new counties' announcement, says parts of these come under Ladakh | No cause for alarm over HMPV virus spread in China: Indian Health Agency | PM Modi gives a call for change in Delhi launching fierce attack on Arvind Kejriwal's AAP | Quran open to passage glorifying violence, bomb-making materials tracked in New Orleans attacker Shamshud-Din Jabbar's home | Jasprit Bumrah leads India in series decider after Rohit Sharma opts to rest in Sydney Test amid poor show with willow
Hack
Representational image from Wallpaper Cave

Firm hacked after unknowingly hiring North Korean cyber criminal as remote IT worker: Report

| @indiablooms | Oct 19, 2024, at 08:16 pm

London/IBNS: A North Korean cyber criminal successfully secured a remote IT position at an undisclosed company and subsequently hacked into its systems, according to a report by the BBC.

The company, based in either the UK, US, or Australia, has chosen to remain anonymous, but allowed cyber security firm Secureworks to share details of the attack to raise awareness about the growing threat of North Korean cyber criminals infiltrating Western businesses.

According to Secureworks, North Korean hackers have started using fake credentials to land remote jobs with Western companies.

Once hired, these cybercriminals exploit their access to company networks to steal sensitive data, and in some cases, extort their employers.

In one such case, reported by the BBC, a North Korean cyber criminal, believed to be male, was hired as a contractor during the summer.

With access to the company’s systems through his remote tools, he immediately began downloading confidential information.

While secretly transferring sensitive data outside the company, the criminal was able to collect four months of salary before being dismissed for poor performance.

Following his termination, the company received ransom threats, with the former contractor demanding payment in exchange for not leaking or selling the stolen data.

It is unclear whether the company paid the ransom, as per the report.

This incident is part of a wider pattern, as cybersecurity agencies have been warning since 2022 about North Korean operatives using fraudulent data to secure well-paid remote jobs in Western countries, circumventing international sanctions.

However, instances of these workers turning on their employers and engaging in hacking activities have been relatively rare until now.

Rafe Pilling, Director of Threat Intelligence at Secureworks, told the BBC, "This marks a serious escalation in the threat posed by North Korean IT worker schemes."

"They are no longer just after steady paychecks, but are now seeking larger payouts through data theft and extortion from within company defenses," Pilling added.

Support Our Journalism

We cannot do without you.. your contribution supports unbiased journalism

IBNS is not driven by any ism- not wokeism, not racism, not skewed secularism, not hyper right-wing or left liberal ideals, nor by any hardline religious beliefs or hyper nationalism. We want to serve you good old objective news, as they are. We do not judge or preach. We let people decide for themselves. We only try to present factual and well-sourced news.

Support objective journalism for a small contribution.