The DOJ Charged Two Alleged Members of North Korea’s Military Intelligence Services With a Scheme That Included Attempts to Steal $1.3 Billion Over the Past Half-Decade for Pyongyang

Stu Sjouwerman | Feb 18, 2021

North Korea Cyber AttackTwo alleged members of North Korea's military intelligence services were accused of hacking banks and companies in the U.S. and several other countries. The grand total for this scheme is $1.3 billion dollars over the past half-decade for Pyongyang. There is now an indictment for the two alleged criminals that was unsealed by the Justice Department this Wednesday.

There are reports that these alleged hackers in North Korea are targeting their efforts on cryptocurrency. Most recently, cryptocurrency apps have been exposed to have found ransomware attacks and the apps promoted fraudulent coin offering for digital cash. 

The third man in question who is also named in the indictment was previously charged in a September 2018 case that accused this person of the 2014 Sony Pictures hack and many other fraudulent accounts. 

The indictment also included that hackers also allegedly were sending spear phishing emails to the State and Defense Departments and to multiple U.S. technology companies in early 2020. 

“North Korea’s operatives, using keyboards rather than guns, stealing digital wallets of cryptocurrency instead of stacks of cash, have become the world’s leading bank robbers,” said John Demers, the Head of the Justice Department’s National Security Division.

These types of calculated attacks are not going away anytime soon. Continual user education is essential in ensuring that your users are prepared to report any suspicious attacks. New-school security awareness training can educate your users with the latest attacks that they can apply in their day to day job functions.

Wall Street Journal has the full story

Discover Your Organization’s Phish-prone™ Percentage

Ninety-one percent of data breaches begin with spear phishing. Launch our Free Phishing Security Test for up to 100 users to uncover your team's vulnerability and see how your security posture stacks up against industry benchmarks.

Get Your Free Phishing Security Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.