North Koreans targeted US-South drills: Seoul police

Published
0
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP

SEOUL: Suspected North Korean hackers have attempted an attack targeting a major joint military exercise between Seoul and Washington that starts on Monday, South Korean police said.

South Korea and the United States will kick off the annual Ulchi Freedom Shield drills on Monday through August 31 to counter growing threats from the nuclear-armed North.

Pyongyang views such exercises as rehearsals for an invasion and has repeatedly warned it would take “overwhelming” action in response.

The hackers — believed to be linked to a North Korean group dubbed Kimsuky — carried out “continuous malicious email attacks” on South Korean contractors working at the allies’ combined exercise war simulation centre, the Gyeonggi Nambu Pro­vin­cial Police Agency said in a statement on Sunday.

“Police investigation confirms that North Korean hacking group was responsible for the attack,” it said in a statement, adding that military-related information was not stolen.

A joint investigation by the police and the US military found that the IP address used in the latest attack matched one identified in a 2014 hack against South Korea’s nuclear reactor operator blamed on the group, according to the statement.

The Kimsuky hackers use “spear phishing” tactics — sending malicious attachments embedded in emails — to exfiltrate desired information from victims.

According to findings by the US Cybersecurity and Infrastructure Secu­rity Agency in 2020, Kimsuky is “most likely tasked by the North Korean regime with a global intelligence gathering mission.” The group — believed to be active since 2012 — targets individuals and organisations in South Korea, Japan, and the United States.

Published in Dawn, August 21st, 2023

Opinion

Editorial

Yemen offensive
Updated 04 Oct, 2026

Yemen offensive

The best option, therefore, is for Muslim and Arab states to help restore the Saudi-Houthi ceasefire.
Growth transition
04 Oct, 2026

Growth transition

PRIME Minister Shehbaz Sharif’s recent call to move from stabilisation to growth, job creation and export ...
Protection at risk
04 Oct, 2026

Protection at risk

THE recent warning from UNHCR should alarm donor governments. Nearly 8.3m refugees and other forcibly displaced...
Talks, at last
Updated 03 Oct, 2026

Talks, at last

The government’s constant threats to suspend KP’s elected dispensation over a political protest have escalated hostilities considerably. In that context, both sides did well to start talking.
IWT’s future
Updated 03 Oct, 2026

IWT’s future

TOGETHER with the Kashmir dispute, India’s unilateral suspension of the Indus Waters Treaty has become the biggest...
Pained minds
03 Oct, 2026

Pained minds

IN Pakistan, mental healthcare is wedged between two extremes — a luxury or a stigma. Estimates cited by the...