Insider Risk Lessons from the DPRK IT Worker Crackdown
2025-07-02 • Dtex Systems •
https://www.dtexsystems.com/blog/insider-risk-lessons-from-dprk-crackdown/
DTEX links the DOJ crackdown on North Korean remote IT worker schemes to a broader insider-risk ecosystem built around U.S. laptop farms, shell companies, stolen identities, facilitators, and financial mules. The excerpt says more than 80 stolen American identities were used to obtain jobs at over 100 U.S. companies, while facilitators accessed personal data belonging to at least 700 people. Reported impacts include exfiltration of ITAR-controlled AI-related data from a California defense contractor and theft of more than $900,000 in digital assets from crypto startups. The activity matters because DPRK operators relied on local infrastructure, remote-access setups, and supply-chain weaknesses rather than only traditional external intrusion tradecraft.