logo

FBI: North Korean Actors Readying Aggressive Cyberattack Wave

ID: 778ffde9-7602-5d7a-a8fa-3f37bb78eec7

STIX ID: report--778ffde9-7602-5d7a-a8fa-3f37bb78eec7

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2024-09-04

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

The FBI warns that North Korean APTs (notably Lazarus and Kimsuky) are conducting reconnaissance and likely imminent social-engineering campaigns aimed at stealing cryptocurrency and deploying malware against organizations with crypto-related assets. Attackers will use highly personalized impersonation and long-term relationship-building (fake recruiters, bespoke offers, pre-employment tests, requests to execute non-standard Node.js/PyPI packages or GitHub code) to gain access; the bulletin details these TTPs and recommends multi-factor verification, isolation of wallet credentials, and strict controls around executing code during recruitment.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.