US-based JumpCloud hacked by North Korean gov't group to loot crypto firms
North Korean government-backed hacking group Labyrinth Chollima was responsible for last month’s attack against US-based tech company JumpCloud in an attempt to gain access to its clientele of crypto firms, Reuters reports. Last week, JumpCloud first announced that a “sophisticated nation-state sponsored threat actor” had gained unauthorized access to its systems and targeted a “small and specific set” of customers. JumpCloud sells software to authorize and manage users across devices for major firms, but a spokesperson said that less than five customers were affected. Cybersecurity researcher Tom Hegel told Reuters that North Korea n Hack ers have become well versed in “supply chain attacks,” wherein service providers are infiltrated in order to access the real prize — its c US tomers. In this case, crypto firms are said to have been targeted but it remains unclear if any crypto was actually stolen , nor is it clear which crypto firms were breached. Working to assess the brea...