[ad_1]
A group of North Korean state-backed hackers attacked JumpCloud, an American software company, in an attempt to steal information about its cryptocurrency customers. JumpCloud first reported that a nation-state actor had committed a security breach in late June, and yesterday (July 20) the company confirmed that North Korean actors were behind the attack.
Which tech stocks have room to run?
The incident affected less than 5 of its customers and less than 10 devices, JumpCloud said in a blog post. JumpCloud said it has over 200,000 customers.
The company did not specify who the attacker was, but cybersecurity firms CrowdStrike and SentinelOne have independently identified North Korean cybercrime group Lazarus, infamous for the 2014 Sony hack, as the perpetrator. Mandiant, a subsidiary of Alphabet, also discovered that the origin of the attack was a North Korean actor.
CrowdStrike, which helped JumpCloud investigate the incident, said a subgroup of Lazarus, called Labyrinth Chollima, was directly responsible for the hack, Reuters reported. The group is one of North Korea’s most prolific hacker groups, Crowdstrike says on its website. He was also responsible for an attack on 3CX, a softphone company, in April.
Cryptocurrency theft in North Korea, by the numbers
$630 million: estimated record value of digital assets stolen by actors linked to North Korea in 2022, UN experts say
$1.7 billion: another estimated value of digital assets stolen by North Korea-linked actors in 2022, according to blockchain analytics firm Chainalysis
$625 million: Estimated value of the cryptocurrency that Lazarus stole from Ronin Network, a blockchain designed for the online game Axie Infinity, in April 2022, making it the biggest crypto heist of all time at the time
$300,000+: Salary some North Korean IT workers could make in a year, US Treasury Department says
One more thing: US sanctions against North Korean computer scientists
The United States in May approved sanctions targeting highly skilled computer workers from North Korea. Mainly located in Russia and China, the criminal workforce numbers in the thousands and helps funnel money into the country’s weapons programs, according to the US Treasury.
These workers deliberately mask their identities, locations and nationalities, typically using fake personas, proxy accounts, stolen identities and forged or forged documents to apply for jobs, the agency said in a May press release. The computer scientists’ activity has been to help DPRK officials procure WMDs and ballistic missile-related items.
Related stories
Two British tobacco companies have been accused of funding North Korea’s nuclear program
North Korea can build rockets. Can he build a satellite?
In North Korea, the App Store is a real store
|
Sources 2/ https://qz.com/north-korea-hacker-lazarus-breach-jumpcloud-crypto-data-1850662939 The mention sources can contact us to remove/changing this article |
[ad_2]