North Korean hackers target nuclear research centre
The attack on a South Korean government-funded research institute has been described as “a massive security breach”


A North Korean hacking group has successfully hacked one of South Korea’s largest state-run think tanks, responsible for researching nuclear technology, it has emerged.
The breach, which happened on 14 May, affected the government-funded Korea Atomic Energy Research Institute (KAERI), according to South Korean lawmaker Ha Tae-keung, as reported by Yonhap.
State-backed hackers are disrupting COVID-19 vaccine efforts North Korea expected to increase cyber attacks due to COVID struggles Oxford University COVID lab falls victim to hackers
Ha, a representative from the People Power party, South Korea's main opposition party, stated that KAERI initially tried to cover up the breach by denying the attack took place, only for it to later admit that its network was breached. The think tank is reportedly still investigating the nature of the attack and whether any data was stolen.
The lawmaker cited analysis by cyber security firm IssueMakersLab, which found that the attack involved 13 IP addresses, some of which were traced to Kimsuky, a unit with North Korea’s military intelligence agency.
"If the country's nuclear power and other key technologies have been leaked, it could become a massive security breach following Pyongyang's hacking of Seoul military cyber command in 2016," said Ha.
Ha added that some of the IP addresses that breached the KAERI network used the email address of Moon Chung-in, a former advisor to President Moon Jae-in. The email account was reportedly hacked in 2018, but it wasn’t until 2020 that a local cyber security firm found that Kimsuky was behind this attack as well.
RELATED RESOURCE
Security awareness training strategies for account takeover protection
Why you need an inside-the-perimeter strategy for internal threats
In November last year, pharmaceutical companies researching treatments and vaccines for COVID-19 were actively being targeted by prominent state-backed hackers from North Korea and Russia. Microsoft stated that these groups were launching “unconscionable” cyber attacks against the companies.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
The number of cyber attacks from North Korean sources is expected to increase this year, according to a report published in February. It detailed that the closure of North Korea’s border with China, along with severe typhoons and floods, to be key factors in the potential increase of cyber crime.
Zach Marzouk is a former ITPro, CloudPro, and ChannelPro staff writer, covering topics like security, privacy, worker rights, and startups, primarily in the Asia Pacific and the US regions. Zach joined ITPro in 2017 where he was introduced to the world of B2B technology as a junior staff writer, before he returned to Argentina in 2018, working in communications and as a copywriter. In 2021, he made his way back to ITPro as a staff writer during the pandemic, before joining the world of freelance in 2022.
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd Published
-
Third time lucky? Microsoft finally begins roll-out of controversial Recall feature
News The Windows Recall feature has been plagued by setbacks and backlash from security professionals
By Emma Woollacott Published
-
Latitude Financial's data policies questioned after more than 14 million records stolen
News Some of the data is from at least 2005 and includes customers’ name, address, and date of birth
By Zach Marzouk Published
-
Latitude hack now under state investigation as customers struggle to protect their accounts
News The cyber attack has affected around 330,000 customers, although the company has said this is likely to increase
By Zach Marzouk Published
-
IDCARE: Meet the cyber security charity shaping Australia and New Zealand's data breach response
Case Studies IDCARE is recruiting a reserve army to turbocharge the fightback against cyber crime not just in the region, but in the interests of victims all over the world
By Zach Marzouk Published
-
Australia commits to establishing second national cyber security agency
News The country is still aiming to be the most cyber-secure country in the world by 2030
By Zach Marzouk Published
-
Medibank bleeds $26 million in cyber costs following hack
News The company believes this figure could rise to $45 million for the 2023 financial year
By Zach Marzouk Published
-
TikTok's two new European data centres to address data protection concerns
News The company is under pressure to prove its user data isn’t being accessed by the Chinese state
By Zach Marzouk Published
-
Cyber attack on Australia’s TPG Telecom affects 15,000 customers
News It is the third cyber attack on a major Australian telco since October
By Zach Marzouk Published
-
Telstra blames IT blunder for leak of 130,000 customer records
News Australia’s biggest telco said that the error was due to a mismanagement of databases and not a cyber attack
By Zach Marzouk Published