Are North Korean IT Remote Workers Targeting Crypto Firms? Here’s What We Know

2022-7-12 09:59

According to the US Government, North Korean IT workers are flooding the freelance market. It’s illegal for US businesses to employ them, but, what if they have no idea they’re doing it? In this new remote work world we’re living in, it’s completely possible. The North Korean workers are targeting all kinds of technology-focused businesses, but of course, the CNN report on the matter focused on cryptocurrency firms.

“It’s an elaborate money-making scheme that relies on front companies, contractors and deception to prey on a volatile industry that is always on the hunt for top talent. North Korean tech workers can earn more than $300,000 annually — hundreds of times the average income of a North Korean citizen — and up to 90% of their wages go to the regime, according to the US advisory.”

In contrast, this is what the US Government actually published: 

“The DPRK dispatches thousands of highly skilled IT workers around the world to generate revenue that contributes to its weapons of mass destruction (WMD) and ballistic missile programs, in violation of U.S. and UN sanctions. These IT workers take advantage of existing demands for specific IT skills, such as software and mobile application development, to obtain freelance employment contracts from clients around the world, including in North America, Europe, and East Asia.”

It’s worth noting that the document doesn’t mention “crypto” or “bitcoin,” but let’s read what mainstream media has to say.

How Does CNN Relate North Korean IT Workers To Crypto?  

The plan is simple, to associate this new development with the numerous crypto-related hacks that NewsBTC has timely reported on: 

“North Korean government-backed hackers have stolen the equivalent of billions of dollars in recent years by raiding cryptocurrency exchanges, according to the United Nations. In some cases, they’ve been able to nab hundreds of millions of dollars in a single heist, the FBI and private investigators say.”

To establish authority, CNN also quotes US Government-related individuals, like “Soo Kim, a former North Korea analyst at the CIA.” She said, “(The North Koreans) take this very seriously. It’s not just some rando in his basement trying to mine cryptocurrency it’s a way of life.” Is she talking about the hackers or the job hunters, though? “Even though the tradecraft is not perfect right now, in terms of their ways of approaching foreigners and preying upon their vulnerabilities, it’s still a fresh market for North Korea,” she said later, apparently talking about the job hunters.

Another authority figure CNN features is “Fred Plan, principal analyst at cybersecurity firm Mandiant, which investigated suspected North Korean tech workers”. He says, “Most of these crypto firms and services are still a long way off from the security posture that we see with traditional banks and other financial institutions”. He’s right about that, but, what does that have to do with freelancers looking for jobs in IT?

ETH price chart for 07/12/2022 on FTX | Source: ETH/USD on TradingView.com What About Those Hacks That Everyone Keeps Talking About?

The only authority figure that relates the IT workers to North Korean hackers is “Nick Carlsen, who until last year was an FBI intelligence analyst focused on North Korea”. What this man says might be the most important part of the article. “These guys know each other. Even if a particular IT worker isn’t a hacker, he absolutely knows one. Any vulnerability they might identify in a client’s systems would be at grave risk.”

The CNN article keeps it as vague as possible regarding the hacks:

“Pyongyang-linked hackers in March stole what was then the equivalent of $600 million in cryptocurrency from a Vietnam-based video gaming company, according to the FBI. And North Korean hackers were likely behind a $100 million heist at a California-based cryptocurrency firm, according to blockchain analysis firm Elliptic.”

Luckily for you, NewsBTC is here to help.

What Does NewsBTC Know About The North Korean Hackers?

The first item seems to refer to the Axie Infinity/ Ronin hack. About that one, we reported:

“The alphabet agency traced the funds to wallets associated with North Korean hacking group Lazarus. Does The Block’s article complete or negate this version of the story? It’s hard to see North Koreans pulling a stunt quite like this.

In any case, at the time the FBI was extremely clear in a statement quoted here: 

“Through our investigation we were able to confirm Lazarus Group and APT38, cyber actors associated with the DPRK, are responsible for the theft of $620 million in Ethereum reported on March 29th.”

If the IT remote workers’ story is true, we were wrong by saying, “It’s hard to see North Koreans pulling a stunt quite like this.” The second item seems to refer to the Harmony hack, and to describe that one we’ll quote our sister site Bitcoinist, who reported:

“The United States government believes that Lazarus was acting on behalf of North Korea’s covert intelligence service. Elliptic, a blockchain analytics company, disclosed in a report that: “The theft was achieved by compromising the cryptographic keys of a multi-signature wallet — most likely through a social engineering attack on members of the Harmony team. The Lazarus Group has routinely employed such methods.”

And that’s what we know so far. Are the North Korean IT workers related to the hackers? Probably so, but, the US Government didn’t even mention cryptocurrencies or bitcoin in their “Guidance on the Democratic People’s Republic of Korea information technology workers.”

Featured Image taken from this post | Charts by TradingView

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

North Korean Won (KPW) íà Currencies.ru

$ 0 (+0.00%)
Îáúåì 24H $0
Èçìåíåèÿ 24h: 0.00 %, 7d: 0.00 %
Cåãîäíÿ L: $0 - H: $0
Êàïèòàëèçàöèÿ $0 Rank 99999
Äîñòóïíî / Âñåãî 0 KPW

korean north remote workers doing idea work

korean north → Ðåçóëüòàòîâ: 126


Ôîòî:

North Korea Cryptocurrency Report Urges Southeast Asia To ‘Mitigate’ Threat

A new report into the alleged use of cryptocurrency by North Korea claims the whole of Southeast Asia is “vulnerable” to state actors. RUSI: North Korea Has ‘Gone To Extremes’ Published April 12, the report, Closing the Crypto Gap: Guidance for Countering North Korean Cryptocurrency Activity in Southeast Asia, comes courtesy of the Royal United Services Institute for Defence and Security Studies (RUSI).

2019-4-16 22:00


Ôîòî:

Inside North Korea’s evil masterplan to siphon Southeast Asia’s cryptocurrency

North Korea might be posturing to attack Southeast Area’s growing cryptocurrency sector, and experts say it demands international response to reduce the threat. British defense think-tank Royal United Services Institute (RUSI) has warned countries like Singapore, Thailand, Malaysia, and Vietnam could soon become targets of state-sponsored hackers intent on skirting international economic sanctions, CNBC reports.

2019-4-15 12:56


Ôîòî:

North Korean Hackers Pivot Towards Cryptocurrency to Fund Country’s Nuclear Program

North Korean hackers with the backing of Pyongyang are targeting cryptocurrency exchange platforms as part of efforts to raise funding for the country’s nuclear weapons program. Wired reports that several international cybersecurity experts believe a hacking syndicate based in the country is also responsible for attacks against banks across the globe.

2019-4-5 13:00


Ôîòî:

Lazarus Hacker Group Continues to Target Crypto Using Faked Trading Software

This article was originally published by 8btc and written by Lylian Tang. The Chinese security service provider 360 Security has issued a warning that a large number of crypto exchanges have been targeted by the North Korean hacker group Lazarus and that the number is still rising after the recent hacks of crypto exchanges DragonEx, Etbox and BiKi.

2019-4-2 21:54


Ôîòî:

North Korean dissidents raise $14K with 100th ‘post-liberation visa’ on Ethereum blockchain

North Korean crypto-revolutionary crew Civil Cheollioma Defense (CCD) has issued its 100th “post-liberation blockchain visa” via the Ethereum blockchain. The group says it has been selling its tokenized visas (G-Visas) since Monday morning, after it claimed it necessary to delay sale for roughly 12 hours due to high demand.

2019-3-27 14:32


Deja Un: Trump’s North Korea Summit Just a Distraction from Cohen’s Embarrassing Testimony

It was no coincidence that US President Donald Trump opted to hold his North Korean summit with Kim Jong-Un at the same time that his former fixer Michael Cohen testified in Congress. Trump Playing Games to Suck Oxygen out of the Newsroom It is a classic Trumpian move to avoid a lousy headline by creating a big flashy headline to suck away as much attention as you can.

2019-2-28 02:58


Ôîòî:

Top Officials at Two Korean Cryptocurrency Exchanges Face Fraud Indictments

Several of South Korea’s top crypto exchanges have found themselves in hot water, with executives at a couple of exchanges facing criminal charges and jail time. According to a news report on the Korean website Blockinpress, the CEO of Komid, a Korean crypto exchange, has received a three-year prison sentence for committing fraud against investors by artificially inflating the exchange’s actual trading volume.

2019-1-23 00:57


South Korea Points to North Korea as Cryptojacking Culprit

South Korean intelligence officials are pointing toward North Korea as being the responsible party behind a string of cryptojacking cases across the country. North Korea Continues to Mine for Crypto on South Korean Computers According to a new intelligence gathering report, prompted by an upcoming visit to North Korea’s nuclear test site by international inspectors,.

2018-11-1 04:00


Ôîòî:

$571 Million in Damages: North Korean Hacking Group Lazarus Behind High-Profile Cryptocurrency Hacks

Although there have been over $882 million cryptocurrencies stolen from online exchanges since 2017, Lazarus, a North Korean, state-sponsored group is responsible for the majority of stolen tokens. According to an article published by The Next Web on October 19, 2018,  the Lazarus Group took over $571 million cryptocurrencies and will continue to do so in the future.

2018-10-22 15:00


Meet Lazarus Group ; The Largest Cryptocurrency Theft Crew of 2018

A North Korean cyber theft crew dubbed “Lazarus ”, has topped the list of highly successful cryptocurrency hacking since January 2017. In a research carried out by cyber security firm Group-IB, it was discovered that the theft crew had stolen a  total of $571 million in cryptocurrency since February 2017 ; the highest amount of […] The post Meet Lazarus Group ; The Largest Cryptocurrency Theft Crew of 2018 appeared first on ZyCrypto.

2018-10-20 16:26