North Koreans targeted US-South drills: Seoul police

Published August 21, 2023
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP
This undated picture released from North Korea’s official Korean Central News Agency (KCNA) on August 21, 2023 shows a strategic cruise missile being launched from a guard ship marine of the 2nd Surface Ship Squadron of the East Sea fleet, also known as the Sea of Japan, part of a Korean People’s naval unit, at an undisclosed location at sea off the coast. — AFP

SEOUL: Suspected North Korean hackers have attempted an attack targeting a major joint military exercise between Seoul and Washington that starts on Monday, South Korean police said.

South Korea and the United States will kick off the annual Ulchi Freedom Shield drills on Monday through August 31 to counter growing threats from the nuclear-armed North.

Pyongyang views such exercises as rehearsals for an invasion and has repeatedly warned it would take “overwhelming” action in response.

The hackers — believed to be linked to a North Korean group dubbed Kimsuky — carried out “continuous malicious email attacks” on South Korean contractors working at the allies’ combined exercise war simulation centre, the Gyeonggi Nambu Pro­vin­cial Police Agency said in a statement on Sunday.

“Police investigation confirms that North Korean hacking group was responsible for the attack,” it said in a statement, adding that military-related information was not stolen.

A joint investigation by the police and the US military found that the IP address used in the latest attack matched one identified in a 2014 hack against South Korea’s nuclear reactor operator blamed on the group, according to the statement.

The Kimsuky hackers use “spear phishing” tactics — sending malicious attachments embedded in emails — to exfiltrate desired information from victims.

According to findings by the US Cybersecurity and Infrastructure Secu­rity Agency in 2020, Kimsuky is “most likely tasked by the North Korean regime with a global intelligence gathering mission.” The group — believed to be active since 2012 — targets individuals and organisations in South Korea, Japan, and the United States.

Published in Dawn, August 21st, 2023

Opinion

Editorial

Military convictions
Updated 22 Dec, 2024

Military convictions

Pakistan’s democracy, still finding its feet, cannot afford such compromises on core democratic values.
Need for talks
22 Dec, 2024

Need for talks

FOR a long time now, the country has been in the grip of relentless political uncertainty, featuring the...
Vulnerable vaccinators
22 Dec, 2024

Vulnerable vaccinators

THE campaign to eradicate polio from Pakistan cannot succeed unless the safety of vaccinators and security personnel...
Strange claim
Updated 21 Dec, 2024

Strange claim

In all likelihood, Pakistan and US will continue to be ‘frenemies'.
Media strangulation
Updated 21 Dec, 2024

Media strangulation

Administration must decide whether it wishes to be remembered as an enabler or an executioner of press freedom.
Israeli rampage
21 Dec, 2024

Israeli rampage

ALONG with the genocide in Gaza, Israel has embarked on a regional rampage, attacking Arab and Muslim states with...