Between Two Gregs: An Update on the North Korean Threat Landscape
2024-11-21 • Microsoft •
https://thecyberwire.com/podcasts/microsoft-threat-intelligence/32/notes
The Microsoft Threat Intelligence Podcast episode features Proofpoint and Microsoft researchers discussing DPRK state-sponsored cyber activity and how it differs from other nation-state operations. The notes frame North Korean operators as technically sophisticated and relentless, with activity shaped by regime funding needs, stolen cryptocurrency, and pressure from government handlers. The episode also covers operator training and skills development, the use of stolen cryptocurrency to support initiatives such as ballistic missile tests, and questions around how DPRK relay networks differ from those used by other threat actors. The source is a podcast note rather than a malware report, so the summary stays at the tradecraft and strategic level supported by the excerpt.