Amazon Catches North Korean IT Worker by Tracking Tiny 110ms Keystroke Delays
ID: 228260b9-097f-5b9e-847e-1e1687f793e3
STIX ID: report--228260b9-097f-5b9e-847e-1e1687f793e3
Feed Name: cybersecurityNews.com
Threat Score
Amazon detected and expelled a North Korean operative who accessed a corporate laptop through a contractor proxy after noticing unusual network latency in keystrokes; the report frames this as part of a broader DPRK campaign using fake resumes and "laptop farmers" to place remote IT workers in U.S. firms, with Amazon blocking roughly 1,800 such hiring attempts since April 2024 and authorities prosecuting facilitators.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
