North Korean Cyber Adversaries Steal Billions from Financial Sector
Article Content
- •North Korean adversaries stole billions in digital assets in 2025.
- •Hands-on-keyboard intrusions increased by 43% globally and 48% in North America.
- •Adversaries are using AI to enhance deception and evade traditional defenses.
In 2025, North Korean-linked adversaries stole billions in digital assets, significantly impacting the financial services sector. The CrowdStrike 2026 Financial Services Threat Landscape Report indicates a 43% rise in hands-on-keyboard intrusions globally, with a 48% increase in North America. These attacks leveraged AI to enhance deception techniques, allowing adversaries to exploit trusted identities and SaaS applications. The report emphasizes the urgent need for financial organizations to adopt AI-driven defenses to counteract these evolving threats. The report is based on intelligence from over 280 named adversaries, highlighting the growing sophistication of cybercrime in the financial domain.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…