The North Korean hacker group Kimsuky has started using artificial intelligence tools to automate attacks, analyze stolen data, and create more convincing phishing campaigns, according to South Korean company Genians. The findings could not yet be independently verified.
Don’t miss: TradeLocker vs MetaTrader
AI tools to streamline data operations
According to the analysis, the group has deployed tools for running large language models directly on their own computers, such as Ollama, GPT4All, and Msty. They also use RAG technology, which enables document search and processing without the need to send sensitive data to external AI providers.
Genians also discovered tools for developing AI agents on infrastructure linked to the campaign, software for speech-to-text conversion, and Cursor, a program designed for AI-assisted programming. According to the company, this suggests efforts to automate and accelerate various parts of cyber operations.
Read more: eToro – Review of the well-known broker
Phishing targets finance and cryptocurrencies
The company also discovered fraudulent documents focused on finance and cryptocurrencies, which were apparently created with the help of artificial intelligence. The materials were designed to resemble actual investment reports and routine business documents, making them appear more credible to potential victims.
North Korea has long used state-backed hacker groups for espionage, theft, and revenue generation. The U.S. Treasury Department imposed sanctions on Kimsuky in 2023, designating it as a cyber espionage group controlled by the North Korean government that obtains information to support Pyongyang’s strategic objectives.
Check out: BITmarkets Review
Source: ČTK











