{"id":4801,"date":"2025-12-28T08:25:54","date_gmt":"2025-12-28T08:25:54","guid":{"rendered":"https:\/\/marketsfortress.com\/index.php\/2025\/12\/28\/north-korean-agents-are-trying-to-infiltrate-amazon-chief-security-officer-says\/"},"modified":"2025-12-28T08:25:54","modified_gmt":"2025-12-28T08:25:54","slug":"north-korean-agents-are-trying-to-infiltrate-amazon-chief-security-officer-says","status":"publish","type":"post","link":"https:\/\/marketsfortress.com\/index.php\/2025\/12\/28\/north-korean-agents-are-trying-to-infiltrate-amazon-chief-security-officer-says\/","title":{"rendered":"North Korean agents are trying to infiltrate Amazon, chief security officer says"},"content":{"rendered":"<p id=\"anchor-217be7\" class=\"body-graf\"><a href=\"https:\/\/www.nbcnews.com\/news\/us-news\/amazon-prime-refunds-2-billion-settlement-going-out-rcna245020\" target=\"_blank\">Amazon<\/a> has blocked hundreds of job applications from suspected <a href=\"https:\/\/www.nbcnews.com\/world\/asia\/north-koreas-kim-jong-un-lauds-sending-troops-overseas-2025-rcna248803\" target=\"_blank\">North Korean<\/a> operatives, according to the U.S. tech giant&#8217;s chief security officer, amid growing concerns over <a href=\"https:\/\/www.nbcnews.com\/tech\/crypto\/north-korea-stole-billions-crypto-2025-new-research-says-rcna249738\" target=\"_blank\">cyber scams<\/a> connected to Pyongyang.<\/p>\n<p id=\"anchor-edd163\" class=\"body-graf\">\u201cTheir objective is typically straightforward: get hired, get paid, and funnel wages back to fund the regime\u2019s weapons programs,\u201d Stephen Schmidt wrote Friday on LinkedIn, adding that applicants were using fake or stolen identities to pursue remote IT jobs in the U.S. and worldwide.  <\/p>\n<div id=\"taboolaReadMoreBelow\"><\/div>\n<p id=\"anchor-888e9e\" class=\"body-graf\">\u201cWe\u2019ve stopped more than 1,800 suspected DPRK operatives from joining since April 2024,\u201d he said, using the initialism for the secretive communist state\u2019s official name, the Democratic People\u2019s Republic of Korea. \u201cWe\u2019ve detected 27% more DPRK-affiliated applications quarter over quarter this year,\u201d he added.<\/p>\n<p id=\"anchor-248bee\" class=\"body-graf\">The fraud was detected by Amazon&#8217;s AI-powered application screening system combined with manual verification by its staff, he said. <\/p>\n<p id=\"anchor-bd7475\" class=\"body-graf\">Schmidt said the agents often use so-called laptop farms \u2014 computers physically based in the U.S. but operated remotely from abroad \u2014 to conceal their true locations.<\/p>\n<p id=\"anchor-febf2c\" class=\"body-graf\">In June, the Justice Department said it had uncovered 29 illegal \u201claptop farms\u201d across the U.S. that were being used by North Korean IT workers.<\/p>\n<p id=\"anchor-cb220f\" class=\"body-graf\">Those cases involved U.S.-based people who created fraudulent companies and &#8220;hosted laptop farms,&#8221; giving North Korean agents remote access to U.S. victim company-provided laptop computers, the Justice Department said in a news release at the time. <\/p>\n<figure class=\"styles_inlineImage__FvnTh styles_medium__MEKii\" id=\"anchor-b044b1\"><img decoding=\"async\" loading=\"lazy\" src=\"https:\/\/media-cldnry.s-nbcnews.com\/image\/upload\/t_fit-760w,f_auto,q_auto:best\/rockcms\/2025-12\/251223-amazon-Stephen-Schmidt-rs-1015a6.jpg\" alt=\"HumanX AI Conference 2025\" height=\"1666\" width=\"2500\"><figcaption class=\"caption styles_caption__TCewG\" data-testid=\"caption\"><span class=\"caption__container\" data-testid=\"caption__container\">Stephen Schmidt.<\/span><span class=\"caption__source\" data-testid=\"caption__source\">Big Event Media \/ Getty Images for HumanX Conference<\/span><\/figcaption><\/figure>\n<p id=\"anchor-3bf614\" class=\"body-graf\">\u201cThese schemes target and steal from U.S. companies and are designed to evade sanctions and fund the North Korean regime\u2019s illicit programs, including its weapons programs,\u201d Assistant Attorney General John A. Eisenberg of the Justice Department&#8217;s National Security Division was quoted as saying in the release. <\/p>\n<p id=\"anchor-b78924\" class=\"body-graf\">The following month, a woman from Arizona was sentenced to more than eight years in prison for running a laptop farm that helped North Korean IT workers get remote jobs at over 300 U.S. companies.<\/p>\n<p id=\"anchor-873c62\" class=\"body-graf\">The scheme generated more than $17 million in illicit revenue for her and Pyongyang, the Justice Department said in a statement at the time.<\/p>\n<p id=\"anchor-1d10d5\" class=\"body-graf\">NBC News did not receive an immediate response when it asked the North Korean Embassy in London for comment Tuesday.<\/p>\n<p id=\"anchor-412406\" class=\"body-graf\">Schmidt wrote in his post numerous other strategies used by fraudulent workers are likely to be operating at scale across the whole industry.<\/p>\n<p id=\"anchor-f91ac5\" class=\"body-graf\">Amazon is one of the world\u2019s largest employers, and its experience of large-scale cyber threats \u201cgives us unique visibility into how these operations evolve and a responsibility to share what we\u2019re learning,\u201d he said. <\/p>\n<p id=\"anchor-9acf99\" class=\"body-graf\">Identity theft and various LinkedIn strategies have become more elaborate, with fraudulent workers impersonating real software engineers and hijacking LinkedIn profiles of active professionals, Schmidt said.<strong> <\/strong><\/p>\n<p id=\"anchor-2d86be\" class=\"body-graf\">&#8220;We\u2019ve also identified networks where people hand over access to their accounts in exchange for payment,&#8221; he added. <\/p>\n<p id=\"anchor-9c981f\" class=\"body-graf\">\u201cSmall details give them away,\u201d he said, warning employers to watch out for common signs of fraud, including incorrectly formatted phone numbers and inconsistent education histories.<\/p>\n<p id=\"anchor-814c47\" class=\"body-graf\">The U.S., Japan and South Korea held a joint forum in Tokyo to improve collaboration against the growing threat of North Korean operatives posing as IT workers in August. <\/p>\n<p id=\"anchor-c496e3\" class=\"endmark body-graf\">In a joint statement, the three countries said that \u201chiring, supporting, or outsourcing work to North Korean IT workers increasingly poses serious risks, ranging from theft of intellectual property, data, and funds to reputational harm and legal consequences.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Amazon has blocked hundreds of job applications from suspected North Korean operatives, according to the U.S. tech giant&#8217;s chief security officer, amid growing concerns over cyber scams connected to Pyongyang. \u201cTheir objective is typically straightforward: get hired, get paid, and funnel wages back to fund the regime\u2019s weapons programs,\u201d Stephen Schmidt wrote Friday on LinkedIn, <\/p>\n","protected":false},"author":0,"featured_media":4802,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[23],"tags":[],"class_list":{"0":"post-4801","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-business"},"_links":{"self":[{"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/posts\/4801","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/comments?post=4801"}],"version-history":[{"count":0,"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/posts\/4801\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/media\/4802"}],"wp:attachment":[{"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/media?parent=4801"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/categories?post=4801"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/marketsfortress.com\/index.php\/wp-json\/wp\/v2\/tags?post=4801"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}