Inside North Korea's Global Hack Network: A Researcher Maps 1,640 Breached Companies

TL;DR Summary
A Greece-based security researcher spent about two years inside North Korea–linked hackers’ servers and found evidence of 1,640 compromised companies across 57 countries, with roughly 700–800 suffering highly damaging intrusions. The attackers often lure developers with fake job offers to gain credentials and broad access, including root access to servers and AWS, targeting crypto wallets and blockchain keys. Stykas publicly names about a dozen affected organizations at Black Hat, while noting many more firms never responded, creating a risk of ongoing, widespread breaches and potential espionage or crypto theft if attackers maintain persistent access.
- A Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks Worldwide WIRED
- 131 Poisoned AI Packages Hit Microsoft’s (MSFT) npm. CrowdStrike (CRWD) Couldn’t Ask for a Better Sales Pitch finance.yahoo.com
- North Korea says US-led cyber threat warnings are bid to smear its image Reuters
- FBI Joint Alert on North Korean IT Workers and Hiring Fraud Pindrop
- 11 nations join rebuke of North Korean IT worker fraud Staffing Industry Analysts
Reading Insights
Total Reads
1
Unique Readers
8
Time Saved
9 min
vs 10 min read
Condensed
95%
1,865 → 94 words
Want the full story? Read the original article
Read on WIRED