North Koreans targeted US-South drills: Seoul police

Published August 21, 2023
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP

SEOUL: Suspected North Korean hackers have attempted an attack targeting a major joint military exercise between Seoul and Washington that starts on Monday, South Korean police said.

South Korea and the United States will kick off the annual Ulchi Freedom Shield drills on Monday through August 31 to counter growing threats from the nuclear-armed North.

Pyongyang views such exercises as rehearsals for an invasion and has repeatedly warned it would take “overwhelming” action in response.

The hackers — believed to be linked to a North Korean group dubbed Kimsuky — carried out “continuous malicious email attacks” on South Korean contractors working at the allies’ combined exercise war simulation centre, the Gyeonggi Nambu Pro­vin­cial Police Agency said in a statement on Sunday.

“Police investigation confirms that North Korean hacking group was responsible for the attack,” it said in a statement, adding that military-related information was not stolen.

A joint investigation by the police and the US military found that the IP address used in the latest attack matched one identified in a 2014 hack against South Korea’s nuclear reactor operator blamed on the group, according to the statement.

The Kimsuky hackers use “spear phishing” tactics — sending malicious attachments embedded in emails — to exfiltrate desired information from victims.

According to findings by the US Cybersecurity and Infrastructure Secu­rity Agency in 2020, Kimsuky is “most likely tasked by the North Korean regime with a global intelligence gathering mission.” The group — believed to be active since 2012 — targets individuals and organisations in South Korea, Japan, and the United States.

Published in Dawn, August 21st, 2023

Opinion

Editorial

After the deluge
Updated 16 Jun, 2024

After the deluge

There was a lack of mental fortitude in the loss against India while against US, the team lost all control and displayed a lack of cohesion and synergy.
Fugue state
16 Jun, 2024

Fugue state

WITH its founder in jail these days, it seems nearly impossible to figure out what the PTI actually wants. On one...
Sindh budget
16 Jun, 2024

Sindh budget

SINDH’S Rs3.06tr budget for the upcoming financial year is a combination of populist interventions, attempts to...
Slow start
Updated 15 Jun, 2024

Slow start

Despite high attendance, the NA managed to pass only a single money bill during this period.
Sindh lawlessness
Updated 15 Jun, 2024

Sindh lawlessness

A recently released report describes the law and order situation in Karachi as “worryingly poor”.
Punjab budget
15 Jun, 2024

Punjab budget

PUNJAB’S budget for 2024-25 provides much fodder to those who believe that the increased provincial share from the...