Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Zack Whittaker
@zackwhittaker@mastodon.social  ·  activity timestamp 2 weeks ago

New, by me: I wrote ~3,700 of my finest words on North Korea's remote IT workers, who have infiltrated businesses across the U.S. and Europe and aren't slowing down. Probably the most pervasive cyber threats today.

Here's my primer on how to recognize & combat them. https://this.weekinsecurity.com/thousands-of-north-koreans-have-secretly-infiltrated-us-and-european-companies-as-remote-it-workers

~this week in security~

Thousands of North Koreans have secretly infiltrated US and European companies as remote IT workers

North Korea's secret remote workers are a major threat facing U.S. and European businesses today, taking jobs in Fortune 100 and smaller companies alike. Here's how to recognize and combat the threat.
  • Copy link
  • Flag this post
  • Block
SewBlue
@sewblue@sfba.social replied  ·  activity timestamp 2 weeks ago

@zackwhittaker Years ago (first dot com boom) my aunt was a director at a well know retail financial brokerage firm.

She decided not to renew a contractor's contract. Russian guy. When she informed him, he blew up at her. She had to call security as he was threatening violence.

Turns out, once they went through his computer, he was probably Russian mafia and was using the company to launder money somehow. Had info on how to hide bodies on his work computer.

  • Copy link
  • Flag this comment
  • Block
EndemicEarthling
@EndemicEarthling@todon.eu replied  ·  activity timestamp 2 weeks ago

@zackwhittaker Cyber security threat: agents of an irrational rogue state bent on destruction using wildly illegal methods to infiltrate organisations in order to steal their data, siphon their money, and expose all their stakeholders to further extortion.

#DPRK or #DOGE ?

  • Copy link
  • Flag this comment
  • Block
Rick Valenzuela
@rv@infosec.exchange replied  ·  activity timestamp 2 weeks ago

@zackwhittaker good sticker reference(s)

notebook with stickers, relevant one with hashtag #opentowork with a North Korean soldier at a computer. plus bonus sticker from OP's sticker pack
notebook with stickers, relevant one with hashtag #opentowork with a North Korean soldier at a computer. plus bonus sticker from OP's sticker pack
notebook with stickers, relevant one with hashtag #opentowork with a North Korean soldier at a computer. plus bonus sticker from OP's sticker pack
  • Copy link
  • Flag this comment
  • Block
Maxim Weinstein
@maximweinstein@mstdn.social replied  ·  activity timestamp 2 weeks ago

@zackwhittaker See also https://news.sophos.com/en-us/2025/11/05/detecting-fraudulent-north-korean-hires-a-ciso-playbook/

  • Copy link
  • Flag this comment
  • Block
Tim Hergert
@cjust@infosec.exchange replied  ·  activity timestamp 2 weeks ago

@zackwhittaker 😆

The guy's face drained to the color of my martini, and clearly this is why I'm not invited to cocktail hour.
The guy's face drained to the color of my martini, and clearly this is why I'm not invited to cocktail hour.
The guy's face drained to the color of my martini, and clearly this is why I'm not invited to cocktail hour.
  • Copy link
  • Flag this comment
  • Block
Zack Whittaker
@zackwhittaker@mastodon.social replied  ·  activity timestamp 2 weeks ago

@cjust glad you enjoyed :)

  • Copy link
  • Flag this comment
  • Block
danimo
@danimo@mastodon.social replied  ·  activity timestamp 2 weeks ago

@zackwhittaker Now that the US has essentially aligned its political system with that of North Korea, an exchange between disenfranchised populations is quite charming 🥹

  • Copy link
  • Flag this comment
  • Block
Zack Whittaker
@zackwhittaker@mastodon.social replied  ·  activity timestamp 2 weeks ago

When I recently told an executive about the North Korean remote workers' scheme at a cocktail hour, he almost shit his pants.

Known as a triple threat, North Koreans gain real jobs at Western firms, earn a wage, then steal data and extort them when they get caught. All to make the regime money for nuclear weapons.

This article includes how the scheme works, why it's effective, and what companies large and small can do to identify suspicious applicants.

Please share!

https://this.weekinsecurity.com/thousands-of-north-koreans-have-secretly-infiltrated-us-and-european-companies-as-remote-it-workers/

~this week in security~

Thousands of North Koreans have secretly infiltrated US and European companies as remote IT workers

North Korea's secret remote workers are a major threat facing U.S. and European businesses today, taking jobs in Fortune 100 and smaller companies alike. Here's how to recognize and combat the threat.
  • Copy link
  • Flag this comment
  • Block
pepperouni kenshin
@superviviansunshine@jorts.horse replied  ·  activity timestamp last week

@zackwhittaker praying for the success of those North Korean remote workers 🙏🏻🇰🇵🫡

  • Copy link
  • Flag this comment
  • Block
FelisCatusDomesticus
@FelisCatusDomesticus@social.vivaldi.net replied  ·  activity timestamp 2 weeks ago

@zackwhittaker

Sorry, no caption provided by author
Sorry, no caption provided by author
Sorry, no caption provided by author
  • Copy link
  • Flag this comment
  • Block
undead
@undead@masto.hackers.town replied  ·  activity timestamp 2 weeks ago

@zackwhittaker

What I would love to see is an analysis of how the NK worker/spies actually get these jobs, because I've got lots of qualified friends who have been unemployed for months.

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login