Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cyberwarfare

South Korean TV Networks, Banks Under Suspect Cyber Attack

SEOUL – The South Korean military raised its cyber attack warning level Wednesday after computer networks crashed at major TV broadcasters and banks, with initial suspicions focused on North Korea.

SEOUL – The South Korean military raised its cyber attack warning level Wednesday after computer networks crashed at major TV broadcasters and banks, with initial suspicions focused on North Korea.

The state-run Korea Internet Security Agency said computer networks at three TV broadcasters — KBS, MBC and YTN — as well as the Shinhan and Nonghyup banks had been “partially or entirely crippled”.

LG Uplus, an Internet service provider, also reported a network crash. An investigator from the specialist cyber wing of the national police agency said the shutdown appeared to have been triggered by a “virus or malicious code”, suggesting a concerted hacking operation.

There was no immediate confirmation of who or what was behind the multiple shutdown, which occurred around 2:00 pm (0500 GMT), but the main finger of suspicion is likely to point at Pyongyang.

Cyber Attack

Wednesday’s crash came days after North Korea accused South Korea and the United States of being behind a “persistent and intensive” hacking assault that took a number of its official websites offline for nearly two days.

The North was believed to be behind two major cyber attacks, in 2009 and 2011, that targeted South Korean government agencies and financial institutions, causing their networks to crash.

In June last year, the conservative JoongAng Ilbo newspaper had its server and website paralysed by a cyber attack that police again attributed to Pyongyang.

The South Korean Defence Ministry said it had raised its five-level “Infocon” cyber threat alert status from four to three.

Advertisement. Scroll to continue reading.

With military tensions on the Korean peninsula at their highest level for years following the North’s nuclear test last month, the Infocon level was only recently raised from five to four — with one being the top threat level.

“We do not rule out the possibility of North Korea being involved, but it’s premature to say so,” Defence Ministry spokesman Kim Min-Seok said.

Shinhan Bank said in a statement that it had been forced to turn away branch customers, while its Internet banking and ATM operations were also badly affected.

However, the network was restored after four hours, the bank said.

A KBS labour union spokesman said all the broadcaster’s computers had crashed simultaneously. Although it remained on air, journalists had difficulty filing stories because they could not access the network, he said.

“We still have no idea who was behind the attacks,” said a spokesman from the broadcasting watchdog Korea Communications Commission.

“The related government agencies are investigating affected PCs. We need more time to figure out who did it, and why,” the spokesman said.

The National Computing and Information Agency, which oversees all the computer networks of government organisations, said its system had been unaffected.

South Korean intelligence officials say North Korea is believed to have a cyber warfare unit staffed by around 3,000 people handpicked for their computing prowess.

Seoul’s Korea Internet Security Agency recorded 40,000 cases of cyber attacks from foreign and domestic sources in 2012, up sharply from 24,000 in 2008.

“South Korea is an IT superpower with good infrastructure but remains relatively vulnerable to hacking,” Park Soon-Tai, manager of the agency’s hacking response team, told AFP in a recent interview.

China, North Korea’s main patron which has angrily denied being behind a spate of cyber attacks on US interests, said the incident in South Korea showed the importance of a collective response to IT threats.

“China would like to work with other countries based on mutual respect and mutual trust in constructive cooperation in this field,” foreign ministry spokesman Hong Lei said.

In a phone call to South Korean President Park Geun-Hye, China’s new leader Xi Jinping said Beijing was willing to help promote “reconciliation” between Seoul and Pyongyang amid the current tensions.

RelatedSouth Korea Says North Was Behind Cyber Attack on Newspaper

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

Shaun Khalfan has joined payments giant PayPal as SVP, CISO.

More People On The Move

Expert Insights

Related Content

Cyberwarfare

WASHINGTON - Cyberattacks are the most serious threat facing the United States, even more so than terrorism, according to American defense experts. Almost half...

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Cyberwarfare

Russian espionage group Nomadic Octopus infiltrated a Tajikistani telecoms provider to spy on 18 entities, including government officials and public service infrastructures.

Malware & Threats

The NSA and FBI warn that a Chinese state-sponsored APT called BlackTech is hacking into network edge devices and using firmware implants to silently...

Cyberwarfare

Several hacker groups have joined in on the Israel-Hamas war that started over the weekend after the militant group launched a major attack.

Cyberwarfare

An engineer recruited by intelligence services reportedly used a water pump to deliver Stuxnet, which reportedly cost $1-2 billion to develop.

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...