Bleeping Computer: North Korean hackers using Chrome extensions to steal Gmail emails

Bleeping Computer: North Korean hackers using Chrome extensions to steal Gmail emails. “Kimsuky (aka Thallium, Velvet Chollima) is a North Korean threat group that uses spear phishing to conduct cyber-espionage against diplomats, journalists, government agencies, university professors, and politicians. Initially focused on targets in South Korea, the threat actors expanded operations over time to target entities in the USA and Europe.”

Korea JoongAng Daily: Experience Korea’s DMZ virtually in latest Google Arts & Culture project

Korea JoongAng Daily: Experience Korea’s DMZ virtually in latest Google Arts & Culture project. “The project scale is massive: Divided into three sections — history, art and nature, the ‘DMZ’ project includes 60 online exhibitions and 5,000 historical records and stories related to the war and the zone. Highlights make up a big portion of the history and nature sections. The former essentially tells people’s stories, of the young soldiers who participated in the war and the refugees who fled to Busan, which acted as the provisional capital during the war.”

Ars Technica: Numerous orgs hacked after installing weaponized open source apps

Ars Technica: Numerous orgs hacked after installing weaponized open source apps. “Hackers backed by the North Korean government are weaponizing well-known pieces of open source software in an ongoing campaign that has already succeeded in compromising ‘numerous’ organizations in the media, defense and aerospace, and IT services industries, Microsoft said on Thursday.”

Wall Street Journal: U.S. Recovers Over $30 Million in Cryptocurrency Stolen by North Korean Hackers

Wall Street Journal: U.S. Recovers Over $30 Million in Cryptocurrency Stolen by North Korean Hackers . “U.S. authorities have seized more than $30 million in cryptocurrency plundered from an online game this year by hackers linked to North Korea, one of the largest successes clawing back digital revenue from Pyongyang, investigators said. While only a fraction of the hundreds of millions in cryptocurrency purloined, the sum recovered is far higher than previously known.”

CNN: Justice Department seizes $500K from North Korean hackers who targeted US medical organizations

CNN: Justice Department seizes $500K from North Korean hackers who targeted US medical organizations. “The US Justice Department seized approximately half a million dollars that North Korean government-backed hackers had either extorted from US health care organizations or used to launder ransom payments, deputy Attorney General Lisa Monaco said Tuesday as she touted an aggressive US strategy to claw back money for victims of ransomware attacks.”

CNN: Here’s how North Korean operatives are trying to infiltrate US crypto firms

CNN: Here’s how North Korean operatives are trying to infiltrate US crypto firms. “North Korean government-backed hackers have stolen the equivalent of billions of dollars in recent years by raiding cryptocurrency exchanges, according to the United Nations…. Now, US federal investigators are publicly warning about a key pillar of the North Korean strategy, in which the regime places operatives in tech jobs throughout the information technology industry.”

Reuters: Crypto crash threatens North Korea’s stolen funds as it ramps up weapons tests

Reuters: Crypto crash threatens North Korea’s stolen funds as it ramps up weapons tests. “The nosedive in cryptocurrency markets has wiped out millions of dollars in funds stolen by North Korean hackers, four digital investigators say, threatening a key source of funding for the sanctions-stricken country and its weapons programmes. North Korea has poured resources into stealing cryptocurrencies in recent years, making it a potent hacking threat and leading to one of the largest cryptocurrency heists on record in March, in which almost $615 million was stolen, according to the U.S. Treasury.”

WIRED: Good Luck Not Accidentally Hiring a North Korean Scammer

WIRED: Good Luck Not Accidentally Hiring a North Korean Scammer . “Last week, the US Treasury, State Department, and Federal Bureau of Investigation jointly issued a 16-page alert warning businesses to guard against a particular scam in which North Korean IT workers apply for freelance contracts—often with wealthy North American, European, and East Asian firms—to generate revenue for their country. The workers pose as IT workers of other nationalities, pretending to be remote workers from South Korea, China, Japan, Eastern Europe, or the US. The alert notes that there are thousands of North Korean IT workers taking on such contracts.”

Reuters: North Korea’s Kim orders military to stabilise supply of COVID drugs

Reuters: North Korea’s Kim orders military to stabilise supply of COVID drugs. “Leader Kim Jong Un has ordered North Korea’s military to stabilise distribution of COVID-19 medicine in the capital, Pyongyang, in the battle on the country’s first confirmed outbreak of the disease, state media said. Last week brought the North’s first acknowledgment of an ‘explosive’ outbreak, with experts warning it could devastate a country with limited medical supplies and no vaccine programme.”

Korea Future: Launching the North Korean Prison Database

Korea Future: Launching the North Korean Prison Database. “Today we launch the North Korean Prison Database — a growing and comprehensive archive of international human rights law violations and atrocities that have transpired in the North Korean Penal system. The database preserves and manages evidence gathered through detailed investigations by Korea Future. To date, we have identified 597 perpetrators linked to 5,181 human rights violations committed against 784 detainees in 148 penal facilities.”