Thursday, January 30, 2025
HomeCyber AttackNorth Korean Hackers Targeted COVID Vaccine Maker AstraZeneca

North Korean Hackers Targeted COVID Vaccine Maker AstraZeneca

Published on

SIEM as a Service

Follow Us on Google News

British pharmaceutical company AstraZeneca, one of the manufacturers leading the way towards developing a Covid-19 vaccine, has been targeted by North Korean hackers. 

Suspected North Korean hackers have tried to break into the systems of AstraZeneca in recent weeks, two people with knowledge of the matter informed Reuters.

The hackers posed as recruiters on LinkedIn and WhatsApp and approached AstraZeneca staff with fake job offers. The documents purporting to be job descriptions were laced with “malicious code designed to gain access to a victim’s computer,” according to the report.

Though they were not successful, the attacks targeted a broad set of people, including staff working on COVID-19 research. The North Korean mission to the United Nations in Geneva reportedly declined to discuss the allegations.

The sources said Reuters “The tools and techniques used in the attacks showed they were a part of an ongoing hacking campaign that U.S. officials and cybersecurity researchers have attributed to North Korea.”

The campaign has previously focused on defense companies and media organizations but pivoted to COVID-related targets in recent weeks, according to three people who have investigated the attacks.

Targeting vaccines

Microsoft said this month it had seen two North Korean hacking groups target vaccine developers in multiple countries, including by “sending messages with fabricated job descriptions.” Microsoft did not name any of the targeted organizations.

South Korean lawmakers said, that the country’s intelligence agency had foiled a number of those attempts.

Reuters has previously reported that hackers from Iran, China, and Russia have attempted to break into leading drugmakers and even the World Health Organisation this year. Tehran, Beijing, and Moscow have all denied the allegations.

Some of the accounts used in the attacks on AstraZeneca were registered to Russian email addresses, one among the sources said, during a possible plan to mislead investigators.

North Korea has been blamed for a few of the most foremost cyber incidents, including the 2014 attack on Sony Pictures deployed in retaliation for the blockbuster movie “The Interview,” the global WannaCry ransomware pandemic in 2017, and many others.

Pyongyang has described the allegations as a part of attempts by Washington to smear its image.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Also Read

COVID-19 Research Organizations Attacked by Chinese Hackers Group

The Importance of Cybersecurity in The Post-COVID-19 World

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Hackers Exploiting DNS Poisoning to Compromise Active Directory Environments

A groundbreaking technique for Kerberos relaying over HTTP, leveraging multicast poisoning, has been recently...

New Android Malware Exploiting Wedding Invitations to Steal Victims WhatsApp Messages

Since mid-2024, cybersecurity researchers have been monitoring a sophisticated Android malware campaign dubbed "Tria...

500 Million Proton VPN & Pass Users at Risk Due to Memory Protection Vulnerability

Proton, the globally recognized provider of privacy-focused services such as Proton VPN and Proton...

Arcus Media Ransomware Strikes: Files Locked, Backups Erased, and Remote Access Disabled

The cybersecurity landscape faces increasing challenges as Arcus Media ransomware emerges as a highly...

API Security Webinar

Free Webinar - DevSecOps Hacks

By embedding security into your CI/CD workflows, you can shift left, streamline your DevSecOps processes, and release secure applications faster—all while saving time and resources.

In this webinar, join Phani Deepak Akella ( VP of Marketing ) and Karthik Krishnamoorthy (CTO), Indusface as they explores best practices for integrating application security into your CI/CD workflows using tools like Jenkins and Jira.

Discussion points

Automate security scans as part of the CI/CD pipeline.
Get real-time, actionable insights into vulnerabilities.
Prioritize and track fixes directly in Jira, enhancing collaboration.
Reduce risks and costs by addressing vulnerabilities pre-production.

More like this

Hackers Exploiting DNS Poisoning to Compromise Active Directory Environments

A groundbreaking technique for Kerberos relaying over HTTP, leveraging multicast poisoning, has been recently...

New Android Malware Exploiting Wedding Invitations to Steal Victims WhatsApp Messages

Since mid-2024, cybersecurity researchers have been monitoring a sophisticated Android malware campaign dubbed "Tria...

500 Million Proton VPN & Pass Users at Risk Due to Memory Protection Vulnerability

Proton, the globally recognized provider of privacy-focused services such as Proton VPN and Proton...