City
Epaper

South Korea, US, UK issue joint advisory on North Korean cyber group activities

By IANS | Updated: July 26, 2024 15:10 IST

Seoul, July 26 South Korea's cybersecurity authority has issued a joint advisory with its US and UK counterparts ...

Open in App

Seoul, July 26 South Korea's cybersecurity authority has issued a joint advisory with its US and UK counterparts against a North Korean cyber group's espionage campaign, targeting classified information in defence, aerospace, nuclear and engineering sectors.

The advisory was issued by South Korea's National Intelligence Service (NIS) and National Police Agency, the US National Security Agency, the UK's National Cyber Security Centre and other related authorities, according to the National Cyber Security Center under the NIS.

The authorities said the cyber group under the North's Reconnaissance General Bureau, widely known as Andariel, has been targeting defence, aerospace, nuclear and engineering entities worldwide to obtain sensitive and classified technical information and intellectual property, Xinhua news agency reported.

This information is used to advance North Korea's military and nuclear capabilities, they added.

"The authoring agencies assess the group has evolved from conducting destructive attacks targeting US and South Korean organisations to conducting specialised cyber espionage and ransomware operations," the advisory read.

Andariel exploits web servers, through software vulnerabilities, to deploy web shells, gain access and then conduct malware and phishing attacks to extort information, the authorities explained.

The advisory recommends critical infrastructure organisations strengthen their monitoring efforts and enhance their cyber protection systems.

Additionally, they noted that Andariel actors also fund their espionage activities through ransomware attacks on US healthcare entities.

On Thursday (US time), the US State Department announced a reward of up to US$10 million for information on Rim Jong-hyuk, a North Korean national known to be associated with Andariel, accusing him of targeting America's critical infrastructure, including hospitals, government entities and defence contractors.

US law enforcement investigators have documented that Andariel actors victimised five healthcare providers, four US-based defence contractors, two US Air Force bases and the National Aeronautics and Space Administration, according to the department.

Last year, Andariel was also found to have stolen digital data containing key technologies from South Korean defence firms and pocketed 470 million won (US$339,154) worth of digital coins via ransomware attacks on other firms.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

TechnologyNPCI directs banks to limit ‘check transaction’ API usage to avoid UPI outage

BusinessNPCI directs banks to limit ‘check transaction’ API usage to avoid UPI outage

BusinessFitness Icon Milind Soman Partners with ZOIL to Revolutionize Oil-Free Cooking

NationalBengal school job case: Sujay Bhadra got Rs 75 crore from middleman, CBI informs court

NashikLemon Prices Spike in Nashik’s Heat; Leafy Vegetables Turn Budget-Friendly

International Realted Stories

InternationalPM Modi congratulates Carney on election win, says looking forward to strengthen India-Canada partnership together

InternationalSouth Korea: Ruling on DP presidential candidate's election law violation case on Thursday

InternationalIndia, Egypt explore strategic skill development partnership

InternationalIndian student Vanshika found dead in Canada, family suspects murder

InternationalBangladesh: Polytechnic Institutes go on nationwide shutdown for technical education reforms