American Invest Hub
  • Politics
  • Investing
  • Business
  • Latest News

American Invest Hub

  • Politics
  • Investing
  • Business
  • Latest News
Business

North Korea-linked hackers use AI to forge South Korean military ID in phishing attack

by admin September 15, 2025
September 15, 2025
North Korea-linked hackers use AI to forge South Korean military ID in phishing attack

A suspected North Korean hacking group has been found using ChatGPT to generate a forged South Korean military identification document as part of a phishing campaign, according to a Bloomberg report citing research by Genians, a South Korean cybersecurity company.

Instead of embedding a real image, attackers linked the fake ID card to malware designed to extract sensitive information from devices.

The incident highlights how North Korean operatives are increasingly deploying artificial intelligence tools to advance cyber-espionage, with targets ranging from journalists and human rights activists to researchers focused on North Korea.

Hackers deploy fake military ID in South Korea

The group involved in the latest attack has been identified as Kimsuky, a suspected North Korean state-sponsored espionage unit.

Researchers said the hackers crafted a draft version of a South Korean military identification card using ChatGPT, making their phishing email appear more credible.

The email, sent from an address ending in .mli.kr—closely resembling an official South Korean military domain—was designed to trick recipients into opening the attachment.

Once clicked, the file deployed malware capable of extracting data.

The targets included South Korean journalists, human rights activists, and researchers studying North Korea.

Exactly how many individuals were compromised remains unclear.

Kimsuky’s history of espionage and AI use

Kimsuky has previously been linked to spying efforts against South Korean and international targets.

In a 2020 advisory, the US Department of Homeland Security stated that the group “is most likely tasked by the North Korean regime with a global intelligence-gathering mission.”

The Genians report is the latest to show suspected North Korean hackers using artificial intelligence as part of their operations.

In August, Anthropic reported that North Korean hackers used Claude Code, another AI tool, to secure remote jobs at US Fortune 500 companies.

The AI chatbot helped operatives build convincing fake identities, pass technical assessments, and deliver coding tasks once hired.

Earlier this year, OpenAI said it had banned accounts linked to North Korea that were using its services to create fraudulent résumés, cover letters, and social media content as part of recruitment attempts.

Investigators test AI restrictions

Genians researchers confirmed that ChatGPT initially rejected attempts to generate a government-issued ID, as the reproduction of such documents is illegal in South Korea.

However, by altering the prompt, the restrictions were bypassed, and the hackers were able to create a fake draft image.

The use of AI in these cyberattacks shows how quickly generative models can be adapted for malicious purposes.

Researchers warn that attackers are using AI not just to create convincing images, but also for malware development, attack scenario planning, and impersonation of recruiters.

Cyberattacks tied to North Korean funding efforts

American officials have long alleged that North Korea employs cyberattacks, cryptocurrency theft, and disguised IT contracts to gather intelligence and generate revenue.

These operations, according to US government assessments, are designed to evade sanctions and finance Pyongyang’s nuclear weapons programme.

The phishing attempt against South Korean targets is another example of how AI is being integrated into such operations.

While the attack used a fake military ID as bait, the broader goal remained consistent with previous North Korean tactics: extracting data and extending cyber-espionage capabilities.

The post North Korea-linked hackers use AI to forge South Korean military ID in phishing attack appeared first on Invezz

0
FacebookTwitterGoogle +Pinterest
previous post
Sainsbury’s shares hit four-year high as Argos sale talks with JD.com collapse
next post
China’s Xpeng expands global footprint with Austria plant

Related Posts

Boeing stock price forms a rare pattern, pointing...

November 20, 2024

U.S. added 818,000 fewer jobs than thought, adding...

August 23, 2024

McDonald’s rising prices pushing some diners away

May 2, 2024

Chrysler and Dodge parent recalling 318,000 vehicles over...

March 27, 2024

Why Friday’s sell-off in S&P 500 was not...

August 2, 2025

Top 4 catalysts for the Dow Jones and...

May 26, 2025

Zoom shares surge 11% after earnings beat and...

August 23, 2025

Platinum miners recover but new production requires price...

July 28, 2025

eBay stock price could surge to $118 despite...

January 9, 2025

Amazon Alexa Fund expands AI investment strategy with...

April 5, 2025

    Stay updated with the latest news, exclusive offers, and special promotions. Sign up now and be the first to know! As a member, you'll receive curated content, insider tips, and invitations to exclusive events. Don't miss out on being part of something special.


    By opting in you agree to receive emails from us and our affiliates. Your information is secure and your privacy is protected.

    Latest News

    • Why India’s gold demand is expected to dip this festive season

      September 15, 2025
    • Oil jumps 2% as OPEC agree to smaller output hike for October, sanction threats looms

      September 8, 2025
    • Weekly recap: tech titans woo Trump, Xi’s political theatre, Starmer’s reshuffle

      September 7, 2025
    • Trump reaffirms backing for Robert Kennedy amid vaccine policy turmoil

      September 7, 2025
    • South Korean president promises aid to citizens held in US immigration raid

      September 7, 2025

    Categories

    • Business (3,954)
    • Investing (2,864)
    • Latest News (2,059)
    • Politics (1,530)
    • About us
    • Contact us
    • Privacy Policy
    • Terms & Conditions

    Disclaimer: americaninvesthub.com, its managers, its employees, and assigns (collectively “The Company”) do not make any guarantee or warranty about what is advertised above. Information provided by this website is for research purposes only and should not be considered as personalized financial advice. The Company is not affiliated with, nor does it receive compensation from, any specific security. The Company is not registered or licensed by any governing body in any jurisdiction to give investing advice or provide investment recommendation. Any investments recommended here should be taken into consideration only after consulting with your investment advisor and after reviewing the prospectus or financial statements of the company.

    Copyright © 2025 americaninvesthub.com | All Rights Reserved