Hangro: Investigating North Korean VPN Infrastructure Part 1
Contents
In a post from a now-deleted user on the webdev subreddit, someone asked about how to acquire a .kp TLD. While there were a few decent responses, the original poster shared an update: they successfully obtained a domain but noted that a VPN is required to access the website. This raised intriguing questions about VPN usage in North Korea.
While several VPN providers claim to operate from North Korea, most merely offer false IP geolocation. However, the poster provided the domain they acquired: hani.star-co.net.kp
. This sparked an investigation into what might be a legitimate North Korean VPN infrastructure.
Is Hangro a VPN?
North Korea’s tightly controlled internet environment relies on specific tools for access. One such tool is the software NetKey, which authenticates users inside the country for internet access. However, it appears there is another program, Hangro, which may potentially function as a VPN for users outside the country. Let’s dig into …
While several VPN providers claim to operate from North Korea, most merely offer false IP geolocation. However, the poster provided the domain they acquired: hani.star-co.net.kp
. This sparked an investigation into what might be a legitimate North Korean VPN infrastructure.
Is Hangro a VPN?
North Korea’s tightly controlled internet environment relies on specific tools for access. One such tool is the software NetKey, which authenticates users inside the country for internet access. However, it appears there is another program, Hangro, which may potentially function as a VPN for users outside the country. Let’s dig into …
IoC
https://www.rfa.org/english/news/korea/smartphone_surveillance-09202022164642.html
175.45.176.32
175.45.176.22
188.43.136.116
175.45.176.21
218.25.43.212
188.43.136.115
[email protected]
[email protected]
[email protected]
[email protected]
[email protected]
[email protected]
175.45.176.32
175.45.176.22
188.43.136.116
175.45.176.21
218.25.43.212
188.43.136.115
[email protected]
[email protected]
[email protected]
[email protected]
[email protected]
[email protected]