北 해킹조직‘안다리엘’평양發 해킹공격으로 방산기술 탈취, 북한으로 랜섬웨어 수익금 송금

2023-12-05 KRNPA North Korean hacking organization ‘Andariel' steals defense technology through hacking attack in Pyongyang and sends ransomware proceeds to North Korea

https://www.smpa.go.kr/user/nd42986.do?View&uQ=&pageST=SUBJECT&pageSV=&imsi=imsi&page=1&pageSC=SORT_ORDER&pageSO=DESC&dmlType=&boardNo=00300907&returnUrl=https://www.smpa.go.kr:443/user/nd42986.do#attachdown

Attachments

북_해킹조직_안다리엘_해킹_및_랜섬웨어_공격_게시용-최종.hwp (560 KB)

Thumbnail for 北 해킹조직‘안다리엘’평양發 해킹공격으로 방산기술 탈취, 북한으로 랜섬웨어 수익금 송금

Seoul Metropolitan Police, working with the FBI, investigated Andariel attacks that stole defense-technology data from South Korean defense companies and generated ransomware proceeds. Investigators said the activity involved a Google account tied to infrastructure leased from South Korean providers and traced hacker access to an IP address in Ryugyong-dong, Pyongyang. The investigation also found that three domestic and foreign ransomware victims paid about 470 million won in bitcoin, part of which was allegedly laundered through an overseas exchange and sent toward North Korea.

Related Actors

First seen: Jul 2017
Last seen: May 2026

Related Reports

« Back