Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Yo_Mama_Been_Loggin

(107,942 posts)
Thu Apr 1, 2021, 02:42 PM Apr 2021

North Korean hackers return, target infosec researchers in new operation

In January, Google and Microsoft outed what they said was North Korean government-sponsored hackers targeting security researchers. The hackers spent weeks using fake Twitter profiles—purportedly belonging to vulnerability researchers—before unleashing an Internet Explorer zero-day and a malicious Visual Studio Project, both of which installed custom malware.

Now, the same hackers are back, a Google researcher said on Wednesday, this time with a new batch of social media profiles and a fake company that claims to offer offensive security services, including penetration testing, software security assessments, and software exploits.

Once more with feeling

The homepage for the fake company is sleek and looks no different from countless real security companies all over the world.

The hackers also cooked up more than a dozen new social media profiles that purported to belong to recruiters for security companies, security researchers, and various employees of SecuriElite, the fake security company. The work that went into creating the profiles was fairly impressive.

https://arstechnica.com/gadgets/2021/04/north-korean-hackers-return-target-infosec-researchers-in-new-operation/

Latest Discussions»General Discussion»North Korean hackers retu...