Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Discover the areas hiding in trusted instruments – find out how in this free expert session

June 19, 2025

Russian APT29 operates Gmail app passwords to get around 2FA in the target phishing campaign

June 19, 2025

Meta adds support to logy for Android and iOS users

June 19, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » The US has imposed sanctions on a North Korean network of IT workers who support WMD programs
Global Security

The US has imposed sanctions on a North Korean network of IT workers who support WMD programs

AdminBy AdminJanuary 17, 2025No Comments4 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


January 17, 2025Ravi LakshmananInsider Threat / Cryptocurrency

The US Department of the Treasury’s Office of Foreign Assets Control (OFAC) has sanctioned two individuals and four entities for their alleged involvement in illegal revenue-generating schemes for the Democratic People’s Republic of Korea (DPRK) by sending IT workers around the world for employment and clearance is a constant source of income for the regime in violation of international sanctions.

“These IT workers hide their identities and locations to fraudulently obtain freelance work contracts from clients around the world for IT projects such as software and mobile application development,” the Treasury Department said. said.

“The DPRK government withholds up to 90% of the wages earned by these foreign workers, thereby generating hundreds of millions of dollars in annual revenue for the Kim regime’s weapons programs, including its weapons of mass destruction (WMD) and ballistic missile programs.”

Cyber ​​security

The action represents the latest salvo in an ongoing effort by the US government to shut down various financially motivated flows aimed at achieving Pyongyang’s strategic goals. The individuals and companies that have been sanctioned by OFAC are listed below –

  • Department 53 of the Ministry of People’s Armed Forces, which is said to be profiting from shell companies related to IT and software development
  • Korea Osong Shipping Co, a Department 53 front company that has housed DPRK IT personnel in Laos since at least 2022
  • Chonsurim Trading Corporation, a Department 53 front company that housed another group of DPRK IT operatives in Laos
  • Liaoning China Trade Industry Co., Ltd, a Chinese company that supplied equipment to Department 53, i.e. laptops and desktops, graphics cards, HDMI cables and network equipment to facilitate the activities of IT staff abroad
  • John In-cheol, President of the DPRK Chonsurim IT Workers Delegation in Laos
  • Song Kyung-sik, China Chief Representative of Korea Osong Shipping Co

Both shell companies are believed to have used false identities and pseudonyms to communicate with customers and develop software for companies around the world.

IT worker fraud scheme attracts The focus is on 2023, although such operations are believed to have continued since at least 2018, when the Treasury Department sanctioned two companies, Yanbian Silverstar and Volasys Silver Star, for “exporting workers from North Korea, including exports to generate revenue for the government North Korea or the Workers’ Party of Korea’.

The cluster of activity is tracked by the cybersecurity community under the aliases Famous Chollima, Nickel Tapestry, UNC5267, and Wagemole.

The latest analyzes have found that North Korean IT workers were increasingly penetrating cryptocurrencies and Web3 companies and “disrupt their networks, operations and integrity.” The insider threat operation also identified people in the US willing to support their schemes starting laptop farms in exchange for a monthly fee.

Cyber ​​security

Increased disclosures about these companies further fueled the surge extortion attempts by stealing intellectual property from the companies they work for and demanding “more cryptocurrency than ever before” for not releasing it publicly or giving it away to competitors, Google-owned Mandiant told Record.

However, the operation of IT workers is only one of many methods that North Korea uses to generate illicit profits. State-sponsored North Korean hacking groups have a long history targeting developers with work-themed lures to deliver various types of malware capable of facilitating data and cryptocurrency theft.

“DPRK continues to rely on thousands of foreign IT workers to generate revenue for the regime, fund its illegal weapons programs and support Russia’s war in Ukraine,” said the acting undersecretary of the Treasury for Terrorism and Finance. Intelligence by Bradley T. Smith.

“The United States remains determined to disrupt these networks, wherever they operate, that contribute to the regime’s destabilizing activities.”

Did you find this article interesting? Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Discover the areas hiding in trusted instruments – find out how in this free expert session

June 19, 2025

Russian APT29 operates Gmail app passwords to get around 2FA in the target phishing campaign

June 19, 2025

Meta adds support to logy for Android and iOS users

June 19, 2025

Linux’s new drawbacks provide complete root access via PAM and Udisks in major distributions

June 19, 2025

The new malicious company uses Cloudflare tunnels to deliver rats through phishing networks

June 18, 2025

1500+ Minecraft players infected with malicious Java software

June 18, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Discover the areas hiding in trusted instruments – find out how in this free expert session

June 19, 2025

Russian APT29 operates Gmail app passwords to get around 2FA in the target phishing campaign

June 19, 2025

Meta adds support to logy for Android and iOS users

June 19, 2025

Linux’s new drawbacks provide complete root access via PAM and Udisks in major distributions

June 19, 2025

The new malicious company uses Cloudflare tunnels to deliver rats through phishing networks

June 18, 2025

1500+ Minecraft players infected with malicious Java software

June 18, 2025

Water Prought works 76 GitHub accounts for a multi -stage malicious company

June 18, 2025

Fedramp at starting speed: obtained lessons

June 18, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Discover the areas hiding in trusted instruments – find out how in this free expert session

June 19, 2025

Russian APT29 operates Gmail app passwords to get around 2FA in the target phishing campaign

June 19, 2025

Meta adds support to logy for Android and iOS users

June 19, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.