US charges three North Koreans for Sony Pictures, WannaCry attacks
The men are said to have been responsible for a $1.3 billion hacking spree


The US Department of Justice (DoJ) has charged three North Korean computer programmers with hacking offences related to a number of high profile data breaches, including an attack on Sony Pictures in 2014.
The men have been accused of attempting to steal more than $1.3 billion in money and cryptocurrency from a number of businesses around the world, according to Reuters.
The charge alleges that Jon Chang Hyok, Kim Il, and Park Jin Hyok conducted a series of attacks while working for North Korea's military intelligence agency. The attack on Sony Pictures Entertainment in 2014 was thought to have been retaliation for the launch of the 'The Interview', a US action comedy film depicting the assassination of North Korean leader Kim Jong-un.
In the aftermath of that attack, security experts from companies including Kaspersky, Trend Micro, and Carbon Black conducted an operation to disrupt the Lazarus group, which was believed to be responsible. The three men were not directly linked to the group in the indictment, however.
Similarly, the three men are also accused of targeting staff at AMC Theatres in the UK and breaking into computers that belonged to the Mammoth Screen production company. The firm was working on a drama series about North Korea, which is also thought to be the reason for the attack.
Park already has a 2018 indictment against his name, according to the DOJ, and the three are also thought to have been involved in the creation of WannaCry 2.0. The ransomware attack crippled a number of other organisation across Europe in 2017, most notably the NHS, which had to cancel around 19,000 appointments and lost around £92 million as a result.
The men have also been blamed for attacks on banks in Asia, Mexico, and Africa with the deployment of malicious applications that exploit SWIFT programming protocols. The three are alleged to have stolen $81 million from a single attack in Bangladesh, according to the indictment.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"North Korea's operatives, using keyboards rather than guns, stealing digital wallets of cryptocurrency instead of sacks of cash, are the world's leading 21st-century nation-state bank robbers," US assistant attorney general John Demers said according to Reuters.
The three men are thought to be currently in North Korea, but officials also believe they have spent periods of time in other countries, such as China and Russia.
Bobby Hellard is ITPro's Reviews Editor and has worked on CloudPro and ChannelPro since 2018. In his time at ITPro, Bobby has covered stories for all the major technology companies, such as Apple, Microsoft, Amazon and Facebook, and regularly attends industry-leading events such as AWS Re:Invent and Google Cloud Next.
Bobby mainly covers hardware reviews, but you will also recognize him as the face of many of our video reviews of laptops and smartphones.
-
Bigger salaries, more burnout: Is the CISO role in crisis?
In-depth CISOs are more stressed than ever before – but why is this and what can be done?
By Kate O'Flaherty Published
-
Cheap cyber crime kits can be bought on the dark web for less than $25
News Research from NordVPN shows phishing kits are now widely available on the dark web and via messaging apps like Telegram, and are often selling for less than $25.
By Emma Woollacott Published
-
Podcast transcript: What did we learn from WannaCry?
IT Pro Podcast Read the full transcript for this episode of the IT Pro Podcast
By IT Pro Published
-
The IT Pro Podcast: What did we learn from WannaCry?
IT Pro Podcast Five years on, WannaCry still remains one of the most impactful security incidents in recent memory
By IT Pro Published
-
Over two-thirds of companies still run software with WannaCry flaw
News Four years have passed, and many systems still need patching
By Danny Bradbury Published
-
Tenable declares there are far worse security threats to fear than zero-day exploits
News ‘If you’re scared of zero-days, you don’t know what you’re talking about’ claims Tenable
By Connor Jones Published
-
Spanish Ryuk ransomware attack hints at new WannaCry
News Ryuk ransomware continues to be a big problem for businesses with reports of attacks on Spanish organisations
By Bobby Hellard Published
-
What is WannaCry?
In-depth The full story behind one of the worst ransomware outbreaks in history
By Adam Shepherd Last updated
-
WannaCry warrior Marcus Hutchins free to return to UK
News Security researcher avoids jail time for role in creating the Kronos banking trojan
By Adam Shepherd Published
-
Exploits for Windows BlueKeep vulnerability commercially available
News The issue has been dubbed 'the next WannaCry' and now attackers can have a copy of their own, for a price
By Connor Jones Published