CriticalSecurity & Privacy
North Korean remote IT staffer worked for US government agency, says FBI
The FBI is investigating a confirmed case of a North Korean national working remotely for a U.S. federal government agency, highlighting a critical vulnerability in hiring and vetting processes that adversaries are actively exploiting. With thousands of North Korean IT workers fraudulently infiltrating private and public sector organizations through identity deception, government agencies face elevated risks of data theft, intellectual property compromise, and potential extortion. This incident underscores the urgent need for IT leaders to implement stronger identity verification, continuous monitoring, and access controls for remote workers, particularly those handling sensitive or classified information.

The investigation shows that North Koreans are able to infiltrate government agencies, as well as private organizations and crypto exchanges.