Servers controlled by North Korean hackers detected in India

Published : Oct 25, 2017, 03:44 PM ISTUpdated : Mar 31, 2018, 06:45 PM IST
Servers controlled by North Korean hackers detected in India

Synopsis

"The compromised servers, found in Indonesia, India, Bangladesh, Malaysia, Vietnam, South Korea, Taiwan, and Thailand, among others, could be used by Lazarus to launch targeted attacks against a company or organisation," Kaspersky Lab said. Korean speaking Lazarus group is believed to be behind recent high profile cyber attacks like the 2014 hack of Sony Pictures, the million-dollar Bangladesh Bank heist in 2016, and the recent WannaCry destructive ransomware epidemic, as per the statement.

Recently, in a shocking revelation, a New York Times post revealed how almost one-fifth of North Korea's cyber attacks originate from India. India may be playing a vital role, though unknowingly. Now, IT security software maker Kaspersky has detected some servers in India that were used by notorious cyber criminal gang Lazarus which is believed to be behind large scale cyber attacks across the world including recent WannaCry ransomware.

While researching the latest activities of the infamous cyber criminal group Lazarus, Kaspersky Lab has uncovered a number of compromised servers being used as part of the threat actors global command and control infrastructure, the software company said.

"The compromised servers, found in Indonesia, India, Bangladesh, Malaysia, Vietnam, South Korea, Taiwan, and Thailand, among others, could be used by Lazarus to launch targeted attacks against a company or organisation," Kaspersky Lab said in a statement.

Korean speaking Lazarus group is believed to be behind recent high profile cyber attacks like the 2014 hack of Sony Pictures, the million-dollar Bangladesh Bank heist in 2016, and the recent WannaCry destructive ransomware epidemic, as per the statement.

The criminal group by name of Guardians of Peace had claimed responsibility on Sony Picture. It had demanded Sony to pull down film The Interview which was a comedy about a plot to assassinate North Korean leader Kim Jong-un. Kaspersky said that Lazarus which is also Korean speaking group "is thought to be state-sponsored".

The US, China and India are top three countries housing maximum number of compromised servers, the Kaspersky Lab report said.

"According to open source intelligence, three of the top five countries that still have servers carrying this vulnerability are in the APAC region: China (with 7,848), India (1,524), and Hong Kong (1,102). The US tops the list with the most vulnerable servers (11,949), while United Kingdom ranks 5th with 805," the report said.

The DailyO report, citing Recorded Future, claims that there is enough evidence to prove that one-fifth of Pyongyang’s cyber attacks originate from India. Though this happening unknowingly, there is the need to tighten the cyber laws in India, in order to improve security.

With inputs from PTI

PREV

Find the latest Technology News covering Smartphone Updates, AI (Artificial Intelligence) breakthroughs, and innovations in space exploration. Stay updated on gadgets, apps, and digital trends with expert reviews, product comparisons, and tech insights. Download the Asianet News Official App from the Android Play Store and iPhone App Store for everything shaping the future of technology.
 

 

Recommended Stories

OpenAI’s Future: Tech Giant Success Or A Netscape-Style Fade?
World's First Flying Car Moves Closer to Reality: Alef Model A Begins Production After 10 Years