• Home
  • News
    • Global Operations
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
    • Industry
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
    • Special Interest
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
  • Market
    • Wired to Win
    • SOFX.NET
  • Intelligence
    • USMC Deception Manual
  • Resources
    • Contact Us
    • About Us
    • Editorial Policy
    • Privacy Policy
  • Home
  • News
    • Global Operations
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
    • Industry
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
    • Special Interest
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
  • Market
    • Wired to Win
    • SOFX.NET
  • Intelligence
    • USMC Deception Manual
  • Resources
    • Contact Us
    • About Us
    • Editorial Policy
    • Privacy Policy
Login
Join Free
Home
Asia
Africa
Europe
Latin America
Middle East
North America
Asia
Africa
Europe
Latin America
Middle East
North America
Asia
Africa
Europe
Latin America
Middle East
North America
Coming Soon
Job Board
Events
Contact Awards
USMC Deception Manual
Login
Join Free
Home Global Operations Asia

North Korean Hackers Target Global Defense Sector in Supply-Chain Attack

  • SOFX Staff Writer
  • February 28, 2024
Airman 1st Class Gerald Mack, cyber operator with 175th Cyber Operations, Maryland Air National Guard, monitors cyber attacks during Exercise Southern Strike at Camp Shelby, Mississippi, April 21, 2023. (U.S. Army National Guard photo by Staff Sgt. Renee Seruntine)
Share on FacebookShare on TwitterLinkedIn

Germany and South Korea’s intelligence agencies have alerted the international community to a sophisticated cyber-espionage operation orchestrated by North Korean government-backed hackers. This operation primarily targets the defense sector, with the aim of acquiring sensitive military technology information. The campaign has been linked to the notorious North Korean Lazarus group, known for its advanced persistent threats (APTs) and cyber-espionage activities.

The advisory detailed two distinct cases of cyberattacks attributed to these North Korean actors. The first case involved a supply-chain attack against a maritime and shipping technologies research center. The attackers compromised the web server maintenance firm associated with the target, utilizing a series of steps that included stealing SSH credentials, employing legitimate tools for malicious purposes, and conducting lateral movement across the network. Their tactics involved downloading malicious files, stealing employee credentials, and attempting to remain undetected within the targeted infrastructure. Despite their efforts to distribute a malicious patch file, their actions were thwarted by the organization’s genuine security manager.

To counter such attacks, the advisory recommends implementing stringent security measures. These include limiting remote access for IT service providers, closely monitoring access logs, enforcing multi-factor authentication (MFA), and adopting rigorous authentication policies for patch management systems.

Expanded Coverage:

Bleeping Computer

SOFX Staff Writer

SOFX Staff Writer

The Editor Staff at SOFX comprises a diverse, global team of dedicated staff writers and skilled freelancers. Together, they form the backbone of our reporting and content creation.

Subscribe
Login
Notify of
guest
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
ADVERTISEMENT

Trending News

Russian Recruits Last 20 to 30 Minutes at the Front, the CIA Director Says, Crediting Ukraine’s Drones

Russian Recruits Last 20 to 30 Minutes at the Front, the CIA Director Says, Crediting Ukraine’s Drones

by SOFX Staff Writer
July 18, 2026
2

The average Russian recruit survives just 20 to 30 minutes at the front in Ukraine before being killed or wounded,...

Army’s $469M Texas Munitions Plant Fails to Deliver a Single Shell Component

Army’s $469M Texas Munitions Plant Fails to Deliver a Single Shell Component

by SOFX Staff Writer
July 15, 2026
2

A contractor-operated plant in Mesquite, Texas, built to produce 30,000 155mm projectile components per month, has not delivered a single...

Viral Video Shows a Russian Gunner Flung From a Runaway Machine Gun

Viral Video Shows a Russian Gunner Flung From a Runaway Machine Gun

by SOFX Staff Writer
July 15, 2026
1

A viral video shows a Russian soldier thrown from a YakB-12.7 rotary machine gun during a training exercise after the...

ADVERTISEMENT
ADVERTISEMENT
Home Global Operations Asia

North Korean Hackers Target Global Defense Sector in Supply-Chain Attack

  • SOFX Staff Writer
  • February 28, 2024
Airman 1st Class Gerald Mack, cyber operator with 175th Cyber Operations, Maryland Air National Guard, monitors cyber attacks during Exercise Southern Strike at Camp Shelby, Mississippi, April 21, 2023. (U.S. Army National Guard photo by Staff Sgt. Renee Seruntine)
Share on FacebookShare on TwitterLinkedIn

Germany and South Korea’s intelligence agencies have alerted the international community to a sophisticated cyber-espionage operation orchestrated by North Korean government-backed hackers. This operation primarily targets the defense sector, with the aim of acquiring sensitive military technology information. The campaign has been linked to the notorious North Korean Lazarus group, known for its advanced persistent threats (APTs) and cyber-espionage activities.

The advisory detailed two distinct cases of cyberattacks attributed to these North Korean actors. The first case involved a supply-chain attack against a maritime and shipping technologies research center. The attackers compromised the web server maintenance firm associated with the target, utilizing a series of steps that included stealing SSH credentials, employing legitimate tools for malicious purposes, and conducting lateral movement across the network. Their tactics involved downloading malicious files, stealing employee credentials, and attempting to remain undetected within the targeted infrastructure. Despite their efforts to distribute a malicious patch file, their actions were thwarted by the organization’s genuine security manager.

To counter such attacks, the advisory recommends implementing stringent security measures. These include limiting remote access for IT service providers, closely monitoring access logs, enforcing multi-factor authentication (MFA), and adopting rigorous authentication policies for patch management systems.

Expanded Coverage:

Bleeping Computer

SOFX Staff Writer

SOFX Staff Writer

The Editor Staff at SOFX comprises a diverse, global team of dedicated staff writers and skilled freelancers. Together, they form the backbone of our reporting and content creation.

Subscribe
Login
Notify of
guest
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
ADVERTISEMENT

Trending News

Russian Recruits Last 20 to 30 Minutes at the Front, the CIA Director Says, Crediting Ukraine’s Drones

Russian Recruits Last 20 to 30 Minutes at the Front, the CIA Director Says, Crediting Ukraine’s Drones

by SOFX Staff Writer
July 18, 2026
2

The average Russian recruit survives just 20 to 30 minutes at the front in Ukraine before being killed or wounded,...

Army’s $469M Texas Munitions Plant Fails to Deliver a Single Shell Component

Army’s $469M Texas Munitions Plant Fails to Deliver a Single Shell Component

by SOFX Staff Writer
July 15, 2026
2

A contractor-operated plant in Mesquite, Texas, built to produce 30,000 155mm projectile components per month, has not delivered a single...

Viral Video Shows a Russian Gunner Flung From a Runaway Machine Gun

Viral Video Shows a Russian Gunner Flung From a Runaway Machine Gun

by SOFX Staff Writer
July 15, 2026
1

A viral video shows a Russian soldier thrown from a YakB-12.7 rotary machine gun during a training exercise after the...

Hegseth Orders Testosterone Screening for U.S. Troops

Hegseth Orders Testosterone Screening for U.S. Troops

by SOFX Staff Writer
July 16, 2026
6

War Secretary Pete Hegseth announced Wednesday that the U.S. military will begin annually screening service members aged 30 and older...

ADVERTISEMENT
ADVERTISEMENT
Next Post
South Korean and US Forces to Conduct Major Military Drills Amid North Korean Threats

South Korean and US Forces to Conduct Major Military Drills Amid North Korean Threats

Attack on Chad’s National Security Agency Results in Fatalities

Attack on Chad's National Security Agency Results in Fatalities

997 Morrison Dr. Suite 200, Charleston, SC 29403

News

  • Global Operations
  • Special Interest
  • Industry
  • Global Operations
  • Special Interest
  • Industry

Resources

  • About Us
  • Contact Us
  • Advertise with Us
  • Editorial Policy
  • Privacy Policy
  • About Us
  • Contact Us
  • Advertise with Us
  • Editorial Policy
  • Privacy Policy
No Result
View All Result
  • Home
  • News
    • Global Operations
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
    • Industry
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
    • Special Interest
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
  • Market
    • Wired to Win
    • SOFX.NET
  • Intelligence
    • USMC Deception Manual
  • Resources
    • Contact Us
    • About Us
    • Editorial Policy
    • Privacy Policy
Subscribe
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.

Log in to your account

Lost your password?
wpDiscuz