Current:Home > StocksNorth Korean charged in ransomware attacks on American hospitals -CryptoBase
North Korean charged in ransomware attacks on American hospitals
View
Date:2025-04-16 05:39:39
KANSAS CITY, Kan. (AP) — A man who allegedly carried out cybercrimes for a North Korean military intelligence agency has been indicted in a conspiracy to hack American health care providers, NASA, military bases and other international entities, federal prosecutors announced Thursday.
Rim Jong Hyok was indicted by a grand jury in Kansas City, Kansas. He’s accused of using money launderers to cash out the illicit proceeds, which he then allegedly used to buy computer servers and fund more cyber attacks on defense, technology and government entities around the world.
The hack on American hospitals on other health care providers disrupted the treatment of patients, officials said. He’s accused of attacks on a total of 17 entities in 11 U.S. states including NASA and military bases as well as defense and energy companies in China, Taiwan and South Korea.
The hackers gained access for more than three months to NASA’s computer system, extracting over 17 gigabytes of unclassified data, the indictment says. They were also able to gain access to computer systems for defense companies in places like Michigan and California along with Randolph Air Force base in Texas and Robins Air Force base in Georgia, authorities say.
“While North Korea uses these types of cyber crimes to circumvent international sanctions and fund its political and military ambitions, the impact of these wanton acts have a direct impact on the citizens of Kansas,” said Stephen A. Cyrus, an FBI agent based in Kansas City.
Online court records do not list an attorney for Hyok, who has lived in North Korea and worked at the military intelligence agency’s offices in both Pyongyang and Sinuiju, according to court records. A reward of up to $10 million has been offered for information that could lead to him or other members of the Andariel Unit of the North Korean government’s Reconnaissance General Bureau, a military intelligence agency.
Justice Department officials said hackers encrypted the files and servers of a Kansas hospital, which they did not identify, in May 2021. The hospital paid about $100,000 in Bitcoin to get its data back, and alerted the FBI. A Colorado health care provider also paid up after it was affected by the same Maui ransomware variant.
The FBI was able to seize online accounts used by the hacking group along with more than $600,000 in proceeds from the ransomware attacks, which have or will be returned to victims, a senior FBI official told reporters.
The Justice Department has brought multiple criminal cases related to North Korean hacking in recent years, often alleging a profit-driven motive that differentiates the activity from that of hackers in Russia and China.
In 2021, for instance, the department charged three North Korean computer programmers in a broad range of global hacks, including a destructive attack targeting an American movie studio, and in the attempted theft and extortion of more than $1.3 billion from banks and companies.
Hyok allegedly conspired to use ransomware software to conduct cyberespionage hacks against American hospitals and other government and technology entities in South Korea, and China.
The hacks are part of North Korean effort to collect information that furthers the country’s military and nuclear aspirations, federal prosecutors said.
__
Goldberg reported from Minneapolis. Durkin Richer reported from Washington, D.C.
veryGood! (447)
Related
- Most popular books of the week: See what topped USA TODAY's bestselling books list
- 2 hospitalized, 27 safe after rowing club boats capsize off Connecticut
- It's official: Caitlin Clark is the most popular player in college basketball this year
- Reddit poised to make its stock market debut after IPO prices at $34 per share amid strong demand
- Federal appeals court upholds $14.25 million fine against Exxon for pollution in Texas
- Fate of Texas immigration law SB4 allowing for deportation now in 5th Circuit court's hands
- Ramy Youssef constantly asks if jokes are harmful or helpful. He keeps telling them anyway
- Chipotle’s board has approved a 50-for-1 stock split. Here’s what that means
- Friday the 13th luck? 13 past Mega Millions jackpot wins in December. See top 10 lottery prizes
- Stock market today: Asian shares rise after Wall Street rallies to records
Ranking
- Could your smelly farts help science?
- Who has the best AI? Tech expert puts ChatGPT, Gemini and Perplexity to the test
- A 'new' star will appear in the night sky in the coming months, NASA says: How to see it
- When does the 'Halo' Season 2 finale come out? Release date, time, cast, where to watch
- Tarte Shape Tape Concealer Sells Once Every 4 Seconds: Get 50% Off Before It's Gone
- Stock market today: Asian shares rise after Wall Street rallies to records
- It's official: Caitlin Clark is the most popular player in college basketball this year
- Landmark Peruvian Court Ruling Says the Marañón River Has Legal Rights To Exist, Flow and Be Free From Pollution
Recommendation
Which apps offer encrypted messaging? How to switch and what to know after feds’ warning
Most popular dog breed rankings are released. Many fans are not happy.
Georgia carries out first execution in more than 4 years
Georgia carries out first execution in more than 4 years
Which apps offer encrypted messaging? How to switch and what to know after feds’ warning
Head of fractured Ohio House loses some GOP allies, but may yet keep leadership role amid infighting
The Utah Jazz arena's WiFi network name is the early star of March Madness
The elusive Cougar's Shadow only emerges twice a year – and now is your last chance to see it until fall