• Home
  • News
  • Fortune 500
  • Tech
  • Finance
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
NewslettersData Sheet

Google outs suspected North Korean hackers

Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
January 26, 2021, 12:23 PM ET

Google security researchers are warning people to be on the lookout for a squad of sly hackers believed to be North Korean agents.

Like last year’s Twitter VIP account takeovers, the newly discovered hacking campaign, unveiled Monday, shows the effectiveness of so-called social engineering—or good old-fashioned trickery. In this case, the hackers lured victims by presenting themselves, through fake online personas, as friendly computer security pros.

The attackers sought first to establish their reputations. They did this, in part, by uploading doctored YouTube videos of supposed hacks to show off their skills. (“A careful review of the video shows the exploit is fake,” Google researchers noted.) They also blogged about the inner workings of software vulnerabilities, sometimes impersonating legitimate cybersecurity experts in “guest” author posts.

After building credibility, the hackers moved to ensnare their marks. They sent messages to cybersecurity pros using a variety of channels: Twitter, LinkedIn, Telegram, Discord, Keybase, and email, among them. Members of so-called “infosec” Twitter, the online community of security pros, are sharingscreenshots and anecdotes of their encounters with the predators—a point of pride for some.

The wool-clad wolves used two methods to compromise people’s machines. Sometimes they would send a target an infected file under the pretense of collaborating on vulnerability research. Once downloaded, the file would install a “backdoor” on the target’s machine.

Other times, the hackers used what’s called a “drive by” attack. They would ask the mark to visit their website, which ran poisoned code. Even seemingly innocuous browsing could lead to malware installation. (I won’t link to the site here, for obvious reasons.)

Alarmingly, Google isn’t quite sure how the hackers infected people’s computers using the drive-by method. The victims were running “fully patched and up-to-date Windows 10 and Chrome browser versions,” meaning their defenses were up, Google researcher Adam Weidemann wrote. “At this time we’re unable to confirm the mechanism of compromise, but we welcome any information others might have,” he said, urging people to report any findings through Google’s bug bounty program.

“We hope this post will remind those in the security research community that they are targets to government-backed attackers and should remain vigilant when engaging with individuals they have not previously interacted with,” Weidemann said.

I would add that it’s not just security researchers who ought be on the lookout. If you’ve got something other people might want—whether that’s the “keys” for account ownership resets at Twitter, coveted hacking exploits, a relationship with other contacts who could be targeted, or whatever else—then, sooner or later, you’re going to be a target too.

Never drop your guard.

Robert Hackett

Twitter: @rhhackett

robert.hackett@fortune.com

THREATS

How do you like them Apples? Analysts expect Apple to post a record-setting quarter tomorrow, as Aaron writes. Wall Street forecasts more than $100 billion in revenue for the company thanks to 5G-equipped iPhone 12 sales. (COVID-19 lockdowns helped as people had fewer places to spend discretionary income.) Meanwhile, Apple added a celebrity-hosted "time to walk" podcast series to its Fitness+ app and hardware chief Dan Riccio got promoted to take on a mysterious "new project." (Electric cars? Virtual reality headsets? Something else??)

Xbox expo.Microsoft is putting on its "game face" for its own earnings report, as the Wall Street Journalwrites. Wall Street is expecting a big quarter with gaming revenue rising 26% year-over-year to $4.2 billion for the fiscal second quarter ended December. That's attributable to the company's release of new Xbox consoles—the Series S and Series X—in the fall. Unfortunately, gaming consoles are a low-margin business compared to software, so that could impact profits. (Don't tell GameStopthat.) 

Too busy earnin'. Apple and Microsoft aren't the only tech companies posting quarterly results this week. More than a fifth of the companies in the S&P 500 are prepping their 10-Qs. Analysts expect new S&P-inductee Tesla to post its sixth consecutive quarter of profits on revenues of $10 billion on Wednesday. Like Apple, Facebook may very well post record earnings, too, thanks to holiday ad sales. (Headline song reference.)

Bird is the word.Twitter is experimenting with a feature that will let people flag and annotate misleading posts. The product, called "birdwatch," is starting with 1,000 testers in the U.S. In related news, Mike Lindell, chief executive of MyPillow and avid Trump supporter, got booted from Twitter for spreading lies about the 2020 presidential election. Twitter also just released a text-editing tool that software developers can easily port into iOS apps and it bought a newsletter subscription company called Revue.

More like Apple MagUnsafe.

ACCESS GRANTED

Millions of people are flocking to Signal, an encrypted messaging app built by a nonprofit group, as they seek alternatives to chat channels like Facebook's WhatsApp. Casey Newton, former Silicon Valley editor for The Verge, writes in his newsletter, Platformer, that the private communications tool is experiencing hypergrowth pains. As Signal's popularity rises, Newton raises questions about content moderation, privacy settings, and other niggling subjects.

It’s often said that social networks’ more disturbing consequences are a result of their business model. First, they take venture capital, pushing them to quickly grow as big as possible. Then, they adopt ad-based business models that reward users who spread misinformation, harass others, and otherwise sow chaos.

Signal’s story illustrates how simply changing an organization’s business model does not eliminate the potential for platform abuse. Wherever there are incentives to grow, and grow quickly, dangers will accumulate, no matter who is paying the engineers’ salaries.

FORTUNE RECON

Grindr fined millions for sharing users’ sexual orientation and location with advertisers by David Meyer

Which mobile carrier has the best 5G network? It depends by Aaron Pressman

How Etsy’s Reverb.com is playing music retail’s big online shift by Phil Wahba

GameStop ‘yolo’ rally blasts on, leaving short sellers squeezed by Jeff John Roberts

Clubhouse reaches a $1 billion after taking off some nine months ago by Lucinda Shen

Reimagining the C-suite for a digital-first world by Brian Elliott

(Some of these stories require a subscription to access.Thank you for supporting our journalism.)

ONE MORE THING

Signal isn't the only app benefiting from WhatsApp's privacy messaging missteps. ICQ, a chat service whose heyday arrived on PCs in the mid-'90s, is back in app form. AOL sold ICQ to Russia's Mail.Ru Group, known for its Facebook-likeVKontakte social network, in 2010, apparently. Now people, many based in Hong Kong, are downloading ICQ for a hit of nostalgia, reports the Wall Street Journal. 

Next, bring back AOL Instant Messenger. 

About the Author
Robert Hackett
By Robert Hackett
Instagram iconLinkedIn iconTwitter icon
See full bioRight Arrow Button Icon

Latest in Newsletters

Michael Dell, chairman and chief executive officer of Dell Inc., from left, his wife Susan Dell, and US President Donald Trump during an announcement on "Trump Accounts" for children in the Roosevelt Room of the White House in Washington, DC, US, on Tuesday, Dec. 2, 2025.
NewslettersCEO Daily
Michael Dell, who’s donating $6.25 billion to ‘Trump Accounts’ for kids, says a childhood savings account changed his life
By Diane BradyDecember 3, 2025
12 minutes ago
Anthropic cofounder and CEO Dario Amodei
AIEye on AI
How Anthropic’s safety first approach won over big business—and how its own engineers are using its Claude AI
By Jeremy KahnDecember 2, 2025
16 hours ago
NewslettersMPW Daily
What to know about Anthropic cofounder Daniela Amodei as the OpenAI competitor races toward profitability
By Emma HinchliffeDecember 2, 2025
20 hours ago
NewslettersTerm Sheet
The startup betting AI can unlock a new era of ‘found money’ for enterprises
By Allie GarfinkleDecember 2, 2025
23 hours ago
NewslettersCFO Daily
2026 will be the year of AI monetization, says Wedbush’s Dan Ives
By Sheryl EstradaDecember 2, 2025
24 hours ago
NewslettersCEO Daily
Why smart CEOs are looking past the rosy ‘record Black Friday’ headlines
By Phil WahbaDecember 2, 2025
1 day ago

Most Popular

placeholder alt text
Economy
Ford workers told their CEO 'none of the young people want to work here.' So Jim Farley took a page out of the founder's playbook
By Sasha RogelbergNovember 28, 2025
5 days ago
placeholder alt text
Success
Warren Buffett used to give his family $10,000 each at Christmas—but when he saw how fast they were spending it, he started buying them shares instead
By Eleanor PringleDecember 2, 2025
1 day ago
placeholder alt text
Economy
Elon Musk says he warned Trump against tariffs, which U.S. manufacturers blame for a turn to more offshoring and diminishing American factory jobs
By Sasha RogelbergDecember 2, 2025
18 hours ago
placeholder alt text
North America
Jeff Bezos and Lauren Sánchez Bezos commit $102.5 million to organizations combating homelessness across the U.S.: ‘This is just the beginning’
By Sydney LakeDecember 2, 2025
20 hours ago
placeholder alt text
C-Suite
MacKenzie Scott's $19 billion donations have turned philanthropy on its head—why her style of giving actually works
By Sydney LakeDecember 2, 2025
1 day ago
placeholder alt text
North America
Anonymous $50 million donation helps cover the next 50 years of tuition for medical lab science students at University of Washington
By The Associated PressDecember 2, 2025
22 hours ago
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Fortune Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

© 2025 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.