Antelope Valley Press

North Korean hackers disrupted by US groups

- By ERIC TUCKER

NEW YORK — The FBI and Justice Department recently disrupted the activities of a hacking group that was sponsored by the North Korean government and that targeted US hospitals with ransomware, ultimately recovering half a million dollars in ransom payments and cryptocurr­ency, Deputy Attorney General Lisa Monaco said, Tuesday.

Monaco revealed new details of the attacks during a speech in which she encouraged organizati­ons hit by ransomware to report the crime to law enforcemen­t, both so that officials can investigat­e and so that they can help victim companies try to get ransom payments back.

In this case, Monaco said, a Kansas hospital that paid a ransom, last year after being attacked by ransomware also contacted the FBI, which traced the payment and identified China-based money launderers who assisted the North Korean hackers in cashing out the illicit proceeds. The FBI was able to recover half a million dollars, including the entire ransom payment from the hospital.

“If you report that attack, if you report the ransom demand and payment, if you work with the FBI, we can take action,” Monaco said at the Internatio­nal Conference on Cyber Security, hosted by Fordham University. “We can follow the money and get it back; we can help prevent the next attack, the next victim; and we can hold cybercrimi­nals accountabl­e.”

US officials in 2021, scrambled to confront a wave of high-profile ransomware attacks — in which hackers encrypt or lock up a victim’s data and demand exorbitant sums to return it — including against a crucial fuel pipeline on the East Coast. Though the pace of such large-scale, front-page attacks seems to have slowed, smaller targets — such as hospitals — continue to be affected.

Newspapers in English

Newspapers from United States