Australia Ranks Third for North Korean Cyber Attacks
Article Content
- •Australia is the third-largest target for North Korean cyber attacks.
- •Microsoft reported 27 cyber threats in Australia from foreign nation-states.
- •AI is being utilized by North Korean hackers to enhance their operations.
According to Microsoft's 2026 Digital Defense Report, Australia has become the third-largest target globally for North Korean hackers, accounting for 5% of their attacks. The report highlights that Australian organizations are experiencing a significant volume of cyber intrusions, ranking 11th overall for state- and criminal cyber threats. The report indicates that North Korean hackers have evolved their tactics, leveraging AI to enhance their operations and conduct more persistent campaigns. Microsoft recorded 27 cyber threats in Australia involving foreign nation-states. The report comes amid heightened awareness of cyber risks in Australia, particularly following a recent incident involving unauthorized access to a Medicare statistics portal. The increasing sophistication of North Korean cyber operations poses a growing concern for both public and private sectors in Australia.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Common questions
What sectors are affected by these attacks?
How significant is the threat from North Korean hackers?
What should organizations in Australia do to protect themselves?
Continue Reading
Critical Zero-Day Exploits Target F5 and Check Point Products F5 Networks released emergency hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in its BIG-IP Access Policy Manager on September 22, 2026, after confirming active exploitation. This flaw allows unauthenticated remote code execution (RCE) and has a CVSS score of 9.8. Concurrently, Check Point disclosed…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…