News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

North Korean state hackers are relying on new espionage tactics
B2B Cyber ​​Security ShortNews

First talk, then hack: The North Korean hacker group TA427 tries to approach foreign policy experts in a rather unspectacular way to find out their position on sanctions. A lot of information is obtained with fake identities. Proofpoint researchers observe numerous hacker groups that are sponsored or supported by government agencies. One of them is TA427, also known as Emerald Sleet, APT43, THALLIUM or Kimsuky. This is a group allied with the Democratic People's Republic of Korea (DPRK or North Korea) that supports the Reconnaissance General Bureau. It is particularly known for successful email phishing campaigns that target experts…

Read more

New malware variant for macOS devices
B2B Cyber ​​Security ShortNews

Jamf's Threat Labs team has identified a new malware variant that targets macOS devices. The malware, called ObjCShellz, is attributed to the financially motivated hacker group BlueNoroff APT from North Korea. The malware differs from previous BlueNoroff attacks in several ways, but follows the group's trend of using simple remote shell functions. These latest attacks are part of the RustBucket campaign, in which BlueNoroff masquerades as an investor or headhunter and often uses domains that impersonate legitimate cryptocurrency companies to infiltrate networks. An analysis by Kaspersky has shown that in many cases the Internet addresses...

Read more

FBI takes action against IT freelancers from North Korea
FBI takes action against North Korean IT freelancers

FBI: North Korea sends many IT employees and developers to China and Russia to work for Western companies and use the money to finance the North Korean missile program. North Koreans also offer their services via freelance platforms, but use IP spoofing to disguise where they really come from. The FBI warns and takes action against registered domains and networks. Due to the shortage of skilled workers, many companies are increasingly relying on unknown IT freelancers who work remotely. As the FBI has discovered, American companies in particular often use IT freelancers from Russia, China and other Asian countries. Many people don't realize that they...

Read more

APT Group Lazarus: North Korea captured $630 million

According to a UN expert report, North Korea was able to capture a record amount of money in 2022 through cyber attacks by the APT group Lazarus. North Korean cybercriminals are believed to have stolen at least $630 million. The sanctioned country uses the money mainly to finance its nuclear and missile programs. The state group Lazarus, among others, is held responsible for the cyber attacks. In public reporting, the Lazarus Group is often used as a generic term for numerous North Korean cyber actors. A blog post by Mandiant provides detailed insights into the various institutions within the hermit state and helps to understand how...

Read more

Hacker groups: Russia, North Korea, Iran and China fully active
Hacker groups: Russia, North Korea, Iran and China fully active

With its new APT - Advanced Persistent Threat - Activity Report, ESET provides a regular overview of the activities of hacker groups and examines their actions in detail. Groups from Russia, North Korea, Iran and China are highly active. Russia-linked hackers like Sandworm, Gamaredon, Turla, or InvisiMole continue to have Ukraine as their primary target. Aerospace and defense companies are popular with actors connected to North Korea. Iranian groups focus their activities on Israel. A German food company was also the target of an APT group linked to China. Overall, ESET researchers could not see a decrease...

Read more

Bureau 325: North Korea and its state hacking
B2B Cyber ​​Security ShortNews

State-led hacker attacks are usually assigned to one of the "Big Four": Russia, China, Iran or North Korea. North Korea's early attacks were primarily directed at South Korea, but in recent years Western countries have also become targets of their financially motivated and espionage-related operations. Based on current research, Mandiant has compiled an overview of North Korean hacking groups and provides information about their connection to the North Korean government. Historically, most North Korean cyberattacks have been attributed to the notorious Lazarus group. New research suggests North Korea's government has various...

Read more