Xorte logo

News Markets Groups

USA | Europe | Asia | World| Stocks | Commodities



Add a new RSS channel

 
 


Keywords

2024-07-26 16:00:08| Engadget

A grand jury in Kansas City has indicted Rim Jong Hyok, a North Korean intelligence operative who allegedly used ransomware to attack health providers' systems in the US, according to AP News. The State Department said Rim is part of a group called Andariel that's controlled by the North Korean intelligence agency, the Reconnaissance General Bureau. Rim is not in the US government's custody. The agency is now offering a $10 million reward for information that would lead to his location or the location of a foreign operative who "engages in certain malicious cyber activities against US critical infrastructure." A Kansas medical center alerted the FBI about an attack that blocked personnel's access to patient files and lab test results, as well as prevented them from operating hospital equipment with their computers, was back in 2021. It's a common MO of Rim's Andariel group, which would infiltrate a computer system and infect it with Maui ransomware. The group would then ask their target for payment and would threaten to release sensitive information if they don't pay up. In the Kansas hospital's case, the group demanded a ransom in Bitcoin worth $100,000 within 48 hours. The group allegedly used the money it gets to buy more computers and servers to fund more cyberattacks.  The FBI, the Cybersecurity and Infrastructure Security Agency (CISA) and the Department of the Treasury issued a joint cybersecurity warning in the midst of Andariel's attacks on healthcare providers in 2022. "The North Korean state-sponsored cyber actors likely assume healthcare organizations are willing to pay ransoms because these organizations provide services that are critical to human life and health," they wrote. Federal investigators said they followed the ransom the Kansas medical center paid across blockchains and found that someone had transferred the Bitcoin to an address belonging to two Hong Kong nationals. Based on the court documents seen by AP, the money was then transferred to a Chinese bank and withdrawn from an ATM in China close to the Sino-Korean Friendship Bridge connecting the country to North Korea.  Andariel and Rim are being accused of infiltrating 17 entities across 11 states, including four defense contractors, two US Air Force bases and NASA. The group was reportedly able to stay in NASA's computer system for three months and steal 17 gigabytes of classified information. During one of its operations that targeted a US defense contractor in November 2022, the State Department said the group was also able to extract over 30 gigabytes of data that include information on the material used in US military aircraft and satellites. This article originally appeared on Engadget at https://www.engadget.com/north-korean-who-used-ransomware-to-attack-us-healthcare-providers-has-been-indicted-140008610.html?src=rss


Category: Marketing and Advertising

 

Latest from this category

13.02Marvel Tkon: Fighting Souls lands on PS5 and PC August 6 with X-Men in tow
13.02Death Stranding 2 for PC arrives on March 19
13.02A Neva prequel is arriving next week
13.02Ring calls off partnership with police surveillance provider Flock Safety
13.02Why Europes First Capital of Small Retail treats shops as public infrastructure
13.02The PS Plus Game Catalog additions for February include Marvels Spider-Man 2
13.02God of War is getting a remake trilogy, and a new retro-inspired action game is out today
13.02Silent Hill: Townfall takes the series' trademark fog to an eerie coastal community
Marketing and Advertising »

All news

13.02Marvel Tkon: Fighting Souls lands on PS5 and PC August 6 with X-Men in tow
13.02Death Stranding 2 for PC arrives on March 19
13.02How womens skiwear falls short when it comes to actually skiing
13.02How to let go of resentment on the job
13.02Cut the noise, back conviction: Madhusudan Kela on investing through volatility
13.02How to meet the surging energy demand without needing as much new electricity
13.02A Neva prequel is arriving next week
13.02Why world models will become a platform capability, not a corporate superpower
More »
Privacy policy . Copyright . Contact form .