Beagle Boyz
2020-08-26 • USCISA • FASTCash 2.0: North Korea's BeagleBoyz Robbing Ba…
The U.S. government tracks BeagleBoyz as a North Korean hacking team, an element of the Reconnaissance General Bureau, that overlaps to varying degrees with groups tracked elsewhere as Lazarus, APT38, Bluenoroff, and Stardust Chollima, and represents a subset of the broader Hidden Cobra activity. Likely active since at least 2014, BeagleBoyz conducts well-planned, disciplined bank robberies rather than typical cybercrime, and has attempted to steal nearly two billion dollars since 2015 through fraudulent ATM cash-out schemes and abuse of compromised bank SWIFT terminals, including the 2016 theft of eighty-one million dollars from Bangladesh Bank. The group has targeted financial institutions across dozens of countries in Africa, Asia, Europe, and the Americas, gaining initial access through spearphishing, watering holes, exploitation of internet-facing applications, and stolen credentials, sometimes obtaining footholds through third-party criminal groups. BeagleBoyz has also deployed destructive wiper and anti-forensic tools against victim banks to disrupt operations and conceal fraudulent transactions, generating revenue believed to fund North Korea's weapons programs.
-
34
Related Actors
-
2
Related Reports
Related Actors
Related Reports
Top Authors
View all reports in this cluster