Skip to content
North Korean Hackers Exploit Google Find Hub for Data Wiping Attacks

North Korean Hackers Exploit Google Find Hub for Data Wiping Attacks

First seen 16 Nov 2025, 18:33 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

North Korean KONNI hackers have exploited Google's Find Hub to remotely wipe target devices. They use KakaoTalk to deliver malware and gain access to victims' Gmail accounts through malicious versions of the Find Hub. This operation is linked to advanced persistent threat activities by state-backed actors.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 183d ago How this analysis works

More articles in this cluster (3)

Following this threat?

Track Konni and Google in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed