North Koreans targeted US-South drills: Seoul police

Published August 21, 2023
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP

SEOUL: Suspected North Korean hackers have attempted an attack targeting a major joint military exercise between Seoul and Washington that starts on Monday, South Korean police said.

South Korea and the United States will kick off the annual Ulchi Freedom Shield drills on Monday through August 31 to counter growing threats from the nuclear-armed North.

Pyongyang views such exercises as rehearsals for an invasion and has repeatedly warned it would take “overwhelming” action in response.

The hackers — believed to be linked to a North Korean group dubbed Kimsuky — carried out “continuous malicious email attacks” on South Korean contractors working at the allies’ combined exercise war simulation centre, the Gyeonggi Nambu Pro­vin­cial Police Agency said in a statement on Sunday.

“Police investigation confirms that North Korean hacking group was responsible for the attack,” it said in a statement, adding that military-related information was not stolen.

A joint investigation by the police and the US military found that the IP address used in the latest attack matched one identified in a 2014 hack against South Korea’s nuclear reactor operator blamed on the group, according to the statement.

The Kimsuky hackers use “spear phishing” tactics — sending malicious attachments embedded in emails — to exfiltrate desired information from victims.

According to findings by the US Cybersecurity and Infrastructure Secu­rity Agency in 2020, Kimsuky is “most likely tasked by the North Korean regime with a global intelligence gathering mission.” The group — believed to be active since 2012 — targets individuals and organisations in South Korea, Japan, and the United States.

Published in Dawn, August 21st, 2023

Opinion

Editorial

Iran stalemate
Updated 02 May, 2026

Iran stalemate

THE US and Iran are currently somewhere between war and peace. While a tenuous ceasefire — extended largely due to...
Tax shortfall
02 May, 2026

Tax shortfall

THE Rs684bn shortfall in tax collection during the first 10 months of the fiscal year is a continuation of a...
Teaching inclusion
02 May, 2026

Teaching inclusion

DISCRIMINATORY and exclusionary content in Punjab’s textbooks has been flagged in Inclusive Education for a United...
Water vision
01 May, 2026

Water vision

WATER insecurity in Pakistan has been building up for decades as per capita water availability has declined from...
Vaccine policy
01 May, 2026

Vaccine policy

PAKISTAN has finally approved its first National Vaccine Policy; a step the health ministry has rightly described as...
Labour rights
Updated 01 May, 2026

Labour rights

THE annual observance of May Day should move beyond statements about the state’s commitment to the rights of...