Quick access to main page (top) Direct access to main contents Quick access to main page (bottom)

North Korean Hackers Kimsuky Trick 1 in 4 with Spear-Phishing Scam

inews24 Views  

“Respected Policy Advisory Committee member, please read the security pledge and write your name and signature by hand before replying by email.”

Caution is advised as spear-phishing emails have been sent out by the North Korean hacking organization Kimsuky.

North Korean hacking image [Photo=Newsis]

On the 3rd, cybersecurity firm Hauri revealed that the number of spear-phishing cases by the North Korean hacking organization Kimsuky is rapidly increasing. Spear-phishing refers to cyber attacks targeting specific individuals or groups.

According to Hauri, from January to October 2023, 24 accounts were impersonated, and 16 mail servers were used for spear-phishing. These emails were sent to over 400 major domestic and international institutions personnel.

These institutions include the Korea CFO Association, Georgetown University, the International Peace Association, the Ministry of Foreign Affairs of the Republic of Korea, the Ministry of Foreign Affairs of Japan, the Presidential Office, and the U.S.-North Korea Committee.

Professors, journalists, and high-ranking officials in politics, diplomacy, defense, and North Korea expertise were impersonated to send out covert and natural spear-phishing emails continuously.

Instead of directly attaching malicious code to the target, initial decoy emails were sent as New Year’s greetings, Christmas greetings, meeting requests, advisory requests, expert opinion requests, etc. A malicious code was sent when the recipient showed interest and responded to the email.

After checking the sending and receiving records of the hacked accounts, Hauri found that the average response rate was about 25%. The response rate is the percentage of recipients who received the spear-hacked email and replied to the sender without suspicion.

The malicious code was distributed in the form of document files (.doc, .docx), downloads using cloud services (Google, MS, etc.), Windows disk compressed files (.iso), malicious script files (.vbs), HTML files, and more.

A Hauri’s Security Response Center representative said, “The spear-phishing emails confirmed this time is completely different from the previous methods of distributing malicious code.” They added, “Because they meticulously, perfectly, and naturally respond according to the target’s information and the content of the reply, and then attempt to distribute malicious code, it’s no different from normal email communication, making it even more dangerous.”

They added that this year, it is expected that the APT (Advanced Persistent Threat) attack group will persist in sending spear-phishing emails in various forms, both within the country and internationally. As a result, they stressed the importance of exercising extra caution when using email.

By. Da Un Kim

inews24
content@www.kangnamtimes.com

Comments0

300

Comments0

[KOREA] Latest Stories

  • MrBeast Effect: How His Surprise Cameo Shakes Up YouTube
  • Rob Schneider's Stand-Up Scandal: Actor's Racially Insensitive Remarks Shock Politicians
  • FIFTY FIFTY: Second Phase and Comeback in the Works
  • Seoul City Threatens to Cut Power to Controversial Adult Video Festival
  • 'City Fisherman' Season 5 Wraps Up with Thrilling Final Showdown
  • Genesis Magma Division Sets New Standards in Performance

You May Also Like

  • 1
    BMW to Cut Emissions by 90% with HVO 100 Fuel in New Diesel Models

    TECH 

  • 2
    Cupra Eyes U.S. Market with Electric Crossovers and a New Identity

    TECH 

  • 3
    AVATR 11: China’s Electric SUV Breaks Records with 662-Mile Range

    TECH 

  • 4
    Valet Thief Steals $275K Rolls-Royce, Crashes It in Shocking Irony

    TECH 

  • 5
    Squid Game Stars Meet Hollywood Legend Brooke Shields on 'The Kelly Clarkson Show'

    ENTERTAINMENT 

Popular Now

  • 1
    Choi Min Hwan Deletes Denial Posts as Public Outrage Grows Over Prostitution Allegations

    ENTERTAINMENT 

  • 2
    Jeon So Yeon Shares Her Ideal Partner Preferences and Future Marriage Plans

    ENTERTAINMENT 

  • 3
    Kang Seung Yoon Completes Military Service with Honors Amid Song Min Ho's Controversy

    ENTERTAINMENT 

  • 4
    Hyun Bin Shares Adorable Parenting Moment: His Son Looks Just Like Son Ye Jin!

    ENTERTAINMENT 

  • 5
    Is Tesla’s Stock Surge Thanks to Trump’s Support? The Evidence is Staggering

    TECH 

Must-Reads

  • 1
    BMW to Cut Emissions by 90% with HVO 100 Fuel in New Diesel Models

    TECH 

  • 2
    Cupra Eyes U.S. Market with Electric Crossovers and a New Identity

    TECH 

  • 3
    AVATR 11: China’s Electric SUV Breaks Records with 662-Mile Range

    TECH 

  • 4
    Valet Thief Steals $275K Rolls-Royce, Crashes It in Shocking Irony

    TECH 

  • 5
    Squid Game Stars Meet Hollywood Legend Brooke Shields on 'The Kelly Clarkson Show'

    ENTERTAINMENT 

Popular Now

  • 1
    Choi Min Hwan Deletes Denial Posts as Public Outrage Grows Over Prostitution Allegations

    ENTERTAINMENT 

  • 2
    Jeon So Yeon Shares Her Ideal Partner Preferences and Future Marriage Plans

    ENTERTAINMENT 

  • 3
    Kang Seung Yoon Completes Military Service with Honors Amid Song Min Ho's Controversy

    ENTERTAINMENT 

  • 4
    Hyun Bin Shares Adorable Parenting Moment: His Son Looks Just Like Son Ye Jin!

    ENTERTAINMENT 

  • 5
    Is Tesla’s Stock Surge Thanks to Trump’s Support? The Evidence is Staggering

    TECH 

Share it on...