Freelance Market Flooded With North Korean IT Actors

Freelance Market Flooded With North Korean IT Actors

October 23, 2023 at 01:46PM

US organizations hiring freelance and temporary IT workers must be cautious of individuals working for the North Korean government. North Korea has infiltrated the freelance market, using skilled IT workers to secretly fund its nuclear weapons program. The workers, based in Russia and China, hide their true identities and locations. The US Department of Justice recently seized domains and revenue associated with this operation. US organizations are advised to be vigilant when hiring and look for red flags such as multiple logins from different IP addresses, requests for payment in cryptocurrencies, and an unwillingness to appear on camera.

Meeting Takeaways:
– US organizations hiring freelance and temporary IT workers should be cautious about individuals working on behalf of the North Korean government.
– North Korea has infiltrated the freelance market with skilled IT workers who direct their earnings towards the country’s nuclear weapons program.
– These workers primarily reside in Russia and China and use various tactics to conceal their true identities and locations.
– The US Department of Justice recently seized 17 domains and $1.7 million in revenues associated with the operation.
– Companies must be vigilant in verifying the identity of the individuals they hire.
– This is not the first warning about North Korean IT workers scamming organizations.
– Hiring managers should be aware of red flags such as multiple logins from different IP addresses, frequent money transfers, and requests for payment in cryptocurrencies.
– Inconsistencies in names, work locations, education, and work history should also be scrutinized.
– One potential indicator of a North Korean IT worker is an unwillingness or inability to appear on camera.
– Organizations can minimize risk by requesting background checks from third-party staffing firms and conducting due diligence on individuals provided.
– Background checks from unknown firms should be rejected.
– The detection of fake identities, especially state-sponsored ones, is challenging but necessary to mitigate risks.

Full Article