How North Korea Revolutionized the Internet as a Tool for Rogue Regimes
2020-02-09 • Recorded Future •
https://go.recordedfuture.com/hubfs/reports/cta-2020-0209.pdf
Attachments
cta-2020-0209.pdf (3 MB)
Recorded Future's Insikt Group analyzed 2019 internet activity by North Korean senior leadership using third-party data, IP geolocation, BGP routing, network traffic, and OSINT. The report assesses that the internet had become critical for DPRK revenue generation, sanctions evasion, access to prohibited technology and knowledge, and operational coordination. It is aimed at technology, finance, defense, cryptocurrency, and logistics organizations, as well as investigators tracking North Korean sanctions circumvention, illicit financing, and state-sponsored cyberespionage.
Indicators of Compromise
| Type | Value | First Seen | Last Seen |
|---|---|---|---|
| DOMAIN | pyongyangtimes.com | 2020-02-09 | 2020-02-09 |
| IPv4 | 175.45.177.16 | 2020-02-09 | 2020-02-09 |
| IPv4 | 175.45.177.15 | 2020-02-09 | 2020-02-09 |
| IPv4 | 175.45.176.20 | 2020-02-09 | 2020-02-09 |
| IPv4 | 175.45.176.15 | 2014-08-27 | 2020-02-09 |
| IPv4 | 175.45.176.16 | 2014-08-27 | 2020-02-09 |
| IPv4 | 175.45.176.67 | 2014-08-27 | 2020-02-09 |